vendor:
phpBugTracker
by:
Unknown
7.5
CVSS
HIGH
SQL Injection, Cross-site Scripting, HTML Injection
Unknown
CWE
Product Name: phpBugTracker
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Platforms Tested:
Unknown
phpBugTracker Multiple Input Validation Vulnerabilities
Multiple input validation vulnerabilities in phpBugTracker allow remote attackers to execute arbitrary SQL commands via the (1) bugid parameter in bug.php, or execute arbitrary script code via the (2) op parameter in bug.php or (3) op parameter in user.php.
Mitigation:
Unknown