Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-07677
HistoryFeb 07, 2023 - 12:00 a.m.

Forget Heart Message Box SQL Injection Vulnerability

2023-02-0700:00:00
China National Vulnerability Database
www.cnvd.org.cn
26
message box
sql injection
validation
attacker
database
vulnerability
website

EPSS

0.001

Percentile

38.3%

Forget Heart Message Box is a messaging website. v1.1 of Forget Heart Message Box is vulnerable to SQL injection, which stems from a lack of validation of external input SQL statements in the name parameter of ca.php. An attacker could use this vulnerability to execute illegal SQL commands to steal sensitive database data.

EPSS

0.001

Percentile

38.3%

Related for CNVD-2023-07677