High
CVSS 7.5
Overview
SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote a...
SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
This vulnerability is rated 🟠 HIGH.
Recommended actions: