CVE-2023-52153
21.02.2024, 22:15
A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthenticated attackers to inject arbitrary SQL commands via the PmbOpac-LOGIN cookie value.
Vendor | Product | Version |
---|---|---|
sigb | pmb | 𝑥 ≤ 7.4.7 |
𝑥
= Vulnerable software versions