漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
SourceCodester Simple Online Public Access Catalog Admin Login sql injection
Vulnerability Description
A vulnerability has been found in SourceCodester Simple Online Public Access Catalog 1.0 and classified as critical. This vulnerability affects unknown code of the file /opac/Actions.php?a=login of the component Admin Login. The manipulation of the argument username/password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-210784.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Vulnerability Type
对消息或数据结构的处理不恰当
Vulnerability Title
Simple Online Public Access Catalog SQL注入漏洞
Vulnerability Description
Simple Online Public Access Catalog(OPAC)是Carlo Montero个人开发者的一个基于网络的应用程序。用于管理某个学校或大学的图书馆资料或图书数据库。 Simple Online Public Access Catalog 1.0版本存在SQL注入漏洞,该漏洞源于对参数username/password的操作导致sql注入。
CVSS Information
N/A
Vulnerability Type
N/A