SQL-Injection vulnerability caused by the lack of...
Critical severity
Unreviewed
Published
Jan 20, 2023
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jan 20, 2023
Published to the GitHub Advisory Database
Jan 20, 2023
Last updated
Jan 27, 2023
SQL-Injection vulnerability caused by the lack of verification of input values for the table name of DB used by the Mangboard bulletin board. A remote attacker can use this vulnerability to execute arbitrary code on the server where the bulletin board is running.
References