vendor:
Pet Rate Pro
by:
TheMirkin
7,5
CVSS
HIGH
SQL Injection, Code Injection, XSS
89, 94, 79
CWE
Product Name: Pet Rate Pro
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2013
Pet Rate Pro Multi Vulnerability
An attacker can exploit this vulnerability by sending a specially crafted URL to the application. The URL contains malicious code which is then executed by the application. This can be used to gain access to sensitive information or to execute malicious code on the server.
Mitigation:
Input validation should be used to detect and reject malicious input. Sanitize all user input to prevent malicious code from being executed.