Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A SQL injection vulnerability in config.inc.php of rConfig 3.9.5 allows attackers to access sensitive database information via a crafted GET request to install/lib/ajaxHandlers/ajaxDbInstall.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
rConfig SQL注入漏洞
Vulnerability Description
rConfig是一款开源的网络配置管理实用程序。 rConfig 存在SQL注入漏洞,该漏洞源于rConfig的3.9.5版本的config.inc.php中存在SQL注入漏洞。攻击者可利用该漏洞通过一个精心制作的GET请求来安装lib ajaxHandlers ajaxDbInstall.php从而访问敏感的数据库信息。
CVSS Information
N/A
Vulnerability Type
N/A