CVE-2017-20249
apptha Apptha Slider Gallery 취약점
Apptha Slider Gallery 1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the albid parameter. Attackers can send GET requests with crafted SQL payloads in the albid parameter to extract sensitive database information including user credentials and authentication hashes.
- 대응 우선순위
- 점검
- CVSS
- 8.8
- EPSS
- 0.29% 백분위 21.7% · 2026.08.05 기준
- CISA KEV
- 미등록
- 조치 기한
- -
- 공개일
- 2026.06.09