itsourcecode Online Discussion Forum是itsourcecode开源的一个在线论坛。 itsourcecode Online Discussion Forum 1.0版本存在SQL注入漏洞,该漏洞源于对参数Username的错误操作导致SQL注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| itsourcecode | Online Discussion Forum | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-10062 | 7.3 HIGH | itsourcecode Student Information Management System login.php sql injection |
| CVE-2025-10063 | 4.3 MEDIUM | itsourcecode POS Point of Sale System deferred_table.php cross site scripting |
| CVE-2025-10029 | 3.5 LOW | itsourcecode POS Point of Sale System complex_header_2.php cross site scripting |
| CVE-2025-10028 | 3.5 LOW | itsourcecode POS Point of Sale System 6776.php cross site scripting |
No comments yet