CVE-2021-25874
01.11.2021, 12:15
AVideo/YouPHPTube AVideo/YouPHPTube 10.0 and prior is affected by a SQL Injection SQL injection in the catName parameter which allows a remote unauthenticated attacker to retrieve databases information such as application passwords hashes.
Vendor | Product | Version |
---|---|---|
youphptube | youphptube | 𝑥 ≤ 10.0 |
𝑥
= Vulnerable software versions