HTTP.Referer.Header.SQL.Injection

description-logoDescription

The web application software is vulnerable to a SQL injection flaw through the HTTP Referer header. A malicious user can thus execute blind SQL queries in the backend database without the user's consent.

affected-products-logoAffected Products

PHP-Nuke 8.0.0 Final

Impact logoImpact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

recomended-action-logoRecommended Actions

Update the vulnerable software.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-10-01 16.936 Sig Added
2020-04-17 15.821 Sig Added
2020-04-09 15.814 Sig Added
2020-03-24 15.803 Sig Added