Online Discussion Forum是一个论坛网站。 Itsourcecode Online Discussion Forum 1.0版本存在SQL注入漏洞,该漏洞源于文件login.php的参数user_email会导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ItsourceCode | Learning Management System Project In PHP | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2024-5517 | 7.3 HIGH | itsourcecode Online Blood Bank Management System changepwd.php sql injection |
| CVE-2024-5516 | 6.3 MEDIUM | itsourcecode Online Blood Bank Management System massage.php sql injection |
| CVE-2024-5518 | 6.3 MEDIUM | itsourcecode Online Discussion Forum change_profile_picture.php unrestricted upload |
No comments yet