SQL injection vulnerability in profil.php in PwsPHP 1.2.3, and possibly earlier versions, allows remote attackers to execute arbitrary SQL commands via the aff_news_form parameter, a different vulnerability than CVE-2005-1509.
References
Configurations
Information
Published : 2006-02-28 18:02
Updated : 2008-09-05 14:00
NVD link : CVE-2006-0942
Mitre link : CVE-2006-0942
JSON object : View
CWE
Products Affected
pwsphp
- pwsphp