Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in detail.php and the catid parameter in (2) get.php and (3) index.php.
References
Link | Resource |
---|---|
http://securitytracker.com/alerts/2005/Oct/1015088.html | Exploit Vendor Advisory |
http://secunia.com/advisories/17306/ | Vendor Advisory |
http://www.osvdb.org/20250 | |
http://www.osvdb.org/20251 | |
http://www.osvdb.org/20252 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/22827 |
Configurations
Information
Published : 2005-10-25 18:02
Updated : 2017-07-10 18:33
NVD link : CVE-2005-3309
Mitre link : CVE-2005-3309
JSON object : View
CWE
Products Affected
zomplog
- zomplog