SQL injection vulnerability in addentry.php in Woltlab Burning Book 1.0 Gold, 1.1.1e, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the user-agent parameter.
From 神龙GPT (AIGC)
在Woltlab burning book 1.0 Gold、1.1.1e以及其他版本中的addentry.php中,存在SQL注入漏洞,允许远程攻击者通过用户代理参数执行任意的SQL命令。