Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Unkn0Wnx

Pesquisador deD4real_TeaM
#34848de 53,638
7.5CVSS total
Vulnerabilidades · 1
PT-2007-6034
7.5
2007-09-17
Php · Php Webquest · CVE-2007-4920
Name of the Vulnerable Software and Affected Versions: PHP Webquest versions 2.5 and earlier Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id actividad` parameter in the soporte derecha w.php file. Recommendations: For PHP Webquest versions 2.5 and earlier, update to a version later than 2.5 to resolve the issue. As a temporary workaround, consider restricting access to the `id actividad` parameter in the soporte derecha w.php file to minimize the risk of exploitation.