PHP.BabeLogger.SQL.Injection

description-logoDescription

It indicates a possible exploit of SQL injection vulnerability in Babe Logger that may allow remote attackers to execute arbitrary SQL commands via the (1) gal parameter to index.php or (2) id parameter to comments.php.

affected-products-logoAffected Products

Babe Logger Babe Logger V2

Impact logoImpact

Data compromise.

recomended-action-logoRecommended Actions

Apply appropriate patch from the vendor if available.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)