在 Moodle 中发现了一个漏洞。拥有问题库 Web 服务访问权限的已认证攻击者可以将未经过滤的输入直接提交到数据库查询中,从而导致 SQL(结构化查询语言)注入漏洞。该问题可能允许攻击者查看、修改或删除底层数据库中存储的敏感数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | - | 5.2.0 ~ 5.2.2 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet