Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Virus_Hackers

Pesquisador deGaza Hacker Team
#36957de 53,638
7.5CVSS total
Vulnerabilidades · 1
PT-2009-1835
7.5
2009-03-02
Unknown · Multiple Membership Script · CVE-2008-6362
Name of the Vulnerable Software and Affected Versions: Multiple Membership Script version 2.5 Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id` parameter in the sitepage.php file. Recommendations: For version 2.5, avoid using the `id` parameter in the sitepage.php file until the issue is resolved. As a temporary workaround, consider restricting access to the sitepage.php file to minimize the risk of exploitation.