PT-2005-2093 · Radbids · Radbids Gold 2
Publicado
2005-04-12
·
Atualizado
2017-07-11
·
CVE-2005-1074
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
RadBids Gold 2
Description
A SQL injection issue exists in index.php, allowing remote attackers to execute arbitrary SQL commands via the
mode parameter.Recommendations
For RadBids Gold 2, consider restricting access to the vulnerable
index.php file until a patch is available, and avoid using the mode parameter in the affected API endpoint.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Radbids Gold 2