Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Venkat Rajgor

#25597de 56,330
9.8CVSS total
Vulnerabilidades · 1
PT-2017-13861
9.8
2017-10-24
Phpsugar · Php Melody Cms · CVE-2017-15081
**Name of the Vulnerable Software and Affected Versions** PHPSUGAR PHP Melody CMS version 2.6.1 **Description** SQL Injection exists in the system, allowing unauthorized access to database information. The issue is specifically related to the `playlist` parameter in the "playlists.php" endpoint. **Recommendations** For PHPSUGAR PHP Melody CMS version 2.6.1, consider restricting access to the "playlists.php" endpoint until a patch is available, and avoid using the `playlist` parameter to minimize the risk of exploitation.