Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL Injection vulnerability in asith-eranga ISIC tour booking through version published on Feb 13th 2018, allows attackers to execute arbitrary commands via the username parameter to /system/user/modules/mod_users/controller.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ISIC SQL注入漏洞
Vulnerability Description
ISIC是asith-eranga个人开发者的一个网站后端。 ISIC tour booking存在安全漏洞,该漏洞源于存在SQL注入,允许攻击者通过/system/user/modules/mod_users/controller.php的username参数执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A