Unrated severityNVD Advisory· Published Nov 1, 2021· Updated Aug 3, 2024
CVE-2021-25874
CVE-2021-25874
Description
AVideo/YouPHPTube AVideo/YouPHPTube 10.0 and prior is affected by a SQL Injection SQL injection in the catName parameter which allows a remote unauthenticated attacker to retrieve databases information such as application passwords hashes.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- AVideo/YouPHPTube/AVideo/YouPHPTubedescription
- Range: <=10.0
Patches
Vulnerability mechanics
References
3- avideoyouphptube.commitrex_refsource_MISC
- synacktiv.commitrex_refsource_MISC
- www.synacktiv.com/sites/default/files/2021-01/YouPHPTube_Multiple_Vulnerabilities.pdfmitrex_refsource_MISC
News mentions
0No linked articles in our index yet.