漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
SQL Injection vulnerabilities exist in https://phpgurukul.com News Portal Project 3.1 via the (1) category, (2) subcategory, (3) sucatdescription, and (4) username parameters, the server response is about (N) seconds delay respectively which mean it is vulnerable to MySQL Blind (Time Based). An attacker can use sqlmap to further the exploitation for extracting sensitive information from the database.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
News Portal Project SQL注入漏洞
Vulnerability Description
News Portal Project是Anuj Kumar个人开发者的一个开源的新闻门户项目。 News Portal Project 存在SQL注入漏洞,该漏洞源于 News Portal Project 3.1 版本存在多个基于远程时间的 SQL 注入漏洞。
CVSS Information
N/A
Vulnerability Type
N/A