Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL injection vulnerability in KnowBand spinwheel v.3.0.3 and before allows a remote attacker to gain escalated privileges and obtain sensitive information via the SpinWheelFrameSpinWheelModuleFrontController::sendEmail() method.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
KnowBand 安全漏洞
Vulnerability Description
KnowBand是KnowBand公司的一个插件。 KnowBand spinwheel v.3.0.3及之前版本存在安全漏洞,该漏洞源于存在SQL注入漏洞。 攻击者可利用该漏洞通过SpinWheelFrameSpinWheelModuleFrontController::sendEmail()函数提升权限并获取敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A