Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A SQL injection vulnerability exists in Sourcecodester Engineers Online Portal in PHP via the id parameter to the announcements_student.php web page. As a result a malicious user can extract sensitive data from the web server and in some cases use this vulnerability in order to get a remote code execution on the remote web server.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Engineers Online Portal SQL注入漏洞
Vulnerability Description
Engineers Online Portal是开源的一个在线门户。是使用PHP、MySQL 数据库、HTML、CSS、Javascript、jQuery、Ajax、Bootstrap 和一些其他库开发的。 Engineers Online Portal 存在安全漏洞,该漏洞源于在PHP的Sourcecodester Engineers Online Portal中存在一个SQL注入漏洞,通过id参数到announcement student.php网页。攻击者可利用该漏洞在远程web服务器上执行远程代码
CVSS Information
N/A
Vulnerability Type
N/A