SQL injection vulnerability in mod_forum/read_message.php in PortailPHP allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php with the affiche parameter set to "Forum-read_mess", a different vulnerability than CVE-2005-1701.
References
Link | Resource |
---|---|
http://msgs.securepoint.com/cgi-bin/get/bugtraq0508/53.html | Exploit |
http://www.securityfocus.com/bid/14474 | Exploit |
http://www.osvdb.org/18685 |
Configurations
Information
Published : 2005-08-06 21:00
Updated : 2008-09-05 13:51
NVD link : CVE-2005-2486
Mitre link : CVE-2005-2486
JSON object : View
CWE
Products Affected
portailphp
- portailphp