Multiple SQL injection vulnerabilities in main.php in Chipmailer 1.09 allow remote attackers to execute arbitrary SQL commands via multiple parameters, as demonstrated by (1) anfang, (2) name, (3) mail, (4) anrede, (5) vorname, (6) nachname, (7) gebtag, (8) gebmonat, and (9) gebjahr.
References
Configurations
Information
Published : 2006-06-20 18:02
Updated : 2017-07-19 18:32
NVD link : CVE-2006-3111
Mitre link : CVE-2006-3111
JSON object : View
CWE
Products Affected
chipmailer
- chipmailer