在 SililaWijesinghe 食品订购系统中发现了一个漏洞,影响范围截至版本 ba314e897e3365600461e5ea59432e39ceaa0fa5。该问题影响文件 /search.php 中的某些未知功能。通过操纵参数 search_box 可导致 SQL 注入漏洞。该漏洞支持远程利用,相关利用代码已公开,可被实际使用。 本产品采用持续交付的滚动发布模式,因此不提供受影响版本或已修复版本的具体版本信息。厂商在披露初期已被联系,但未作任何回应。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SililaWijesinghe | Food Ordering System | ba314e897e3365600461e5ea59432e39ceaa0fa5 |
cpe:2.3:a:sililawijesinghe:food_ordering_system:*:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No comments yet