Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
webchess v1.0 was discovered to contain a SQL injection vulnerability via the $playerID parameter at mainmenu.php. NOTE: this is disputed by a third party who indicates that the playerID is a session variable controlled by the server, and thus cannot be used for exploitation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WebChess SQL注入漏洞
Vulnerability Description
WebChess是一款基于Web的在线国际象棋游戏。 WebChess v1.0 版本存在SQL注入漏洞,该漏洞源于 mainmenu.php 中的 $playerID 参数包含 SQL 注入漏洞。
CVSS Information
N/A
Vulnerability Type
N/A