Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Virus_Hackers

Pesquisador deGaza Hacker Team
#38142de 56,330
7.5CVSS total
Vulnerabilidades · 1
PT-2009-1835
7.5
2009-03-02
Unknown · Multiple Membership Script · CVE-2008-6362
Name of the Vulnerable Software and Affected Versions: Multiple Membership Script version 2.5 Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id` parameter in the sitepage.php file. Recommendations: For version 2.5, avoid using the `id` parameter in the sitepage.php file until the issue is resolved. As a temporary workaround, consider restricting access to the sitepage.php file to minimize the risk of exploitation.