Description
|
|
Multiple vulnerabilities have been identified in CLUB-Nuke [XP], which may be exploited by remote attackers to execute arbitrary SQL commands. These flaws are due to input validation errors in the "haber_detay.asp" and "menu.asp" scripts that do not validate the "haber_id" and "menu_id" parameters before being used in SQL statements, which could be exploited by malicious people to conduct SQL injection attacks.
|