Online Discussion Forum是一个论坛网站。 Online Discussion Forum 1.0版本存在SQL注入漏洞,该漏洞源于register_me.php 包含一些未知处理,通过参数 eaddress 导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| itsourcecode | Online Discussion Forum | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2024-5745 | 7.3 HIGH | itsourcecode Bakery Online Ordering System unrestricted upload |
| CVE-2024-5734 | 6.3 MEDIUM | itsourcecode Online Discussion Forum poster.php unrestricted upload |
No comments yet