Online Notice Board System是一个网上布告栏系统。 Online Notice Board System v1.0 版本存在SQL注入漏洞,该漏洞源于在处理 login.php 页面的 e 参数时没有经过过滤就将数据发送到数据库进行处理。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Kashipara Group | Online Notice Board System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-50743 | 9.8 CRITICAL | Online Notice Board System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50867 | 9.8 CRITICAL | Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50866 | 9.8 CRITICAL | Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50865 | 9.8 CRITICAL | Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50864 | 9.8 CRITICAL | Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50863 | 9.8 CRITICAL | Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50862 | 9.8 CRITICAL | Travel Website v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50753 | 9.8 CRITICAL | Online Notice Board System v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49622 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49666 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49665 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49658 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49639 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49633 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49625 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-49624 | 9.8 CRITICAL | Billing Software v1.0 - Multiple Unauthenticated SQL Injections (SQLi) |
| CVE-2023-50760 | 8.8 HIGH | Online Notice Board System v1.0 - Insecure File Upload |
No comments yet