vBulletin admincp/admincalendar.php模块SQL注入漏洞 CVE-2008-6256 CNNVD-200902-534

6.5 AV AC AU C I A
发布: 2009-02-24
修订: 2018-10-11

vBulletin是一款开放源代码的PHP论坛程序。 vBulletin论坛的admincp/admincalendar.php文件没有正确地验证用户提交参数: -------------------[original source code]------------------ if($_POST[\'\'do\'\'] == \'\'saveholiday\'\') { $vbulletin->input->clean_array_gpc(\'\'p\'\', array( \'\'holidayid\'\' => TYPE_INT, \'\'holidayinfo\'\' => TYPE_ARRAY, \'\'month1\'\' => TYPE_INT, \'\'day1\'\' => TYPE_INT, \'\'month2\'\' => TYPE_INT, \'\'day2\'\' => TYPE_INT, \'\'period\'\' => TYPE_INT, \'\'title\'\' => TYPE_STR, \'\'description\'\' => TYPE_STR, )); .. $db->query_write(\" UPDATE \" . TABLE_PREFIX . \"holiday SET allowsmilies = \" . $vbulletin->GPC[\'\'holidayinfo\'\'][\'\'allowsmilies\'\'] . \", recuroption = \'\'\" . $vbulletin->GPC[\'\'holidayinfo\'\'][\'\'recuroption\'\'] . \"\'\', recurring = \" . $vbulletin->GPC[\'\'holidayinfo\'\'][\'\'recurring\'\'] . \" WHERE holidayid = \" . $vbulletin->GPC[\'\'holidayid\'\'] ); ------------------[/original source code]------------------...

0%
暂无可用Exp或PoC
当前有1条受影响产品信息