CVE-2007-6393

SQL injection vulnerability in albums.php in Ace Image Hosting Script allows remote authenticated users to execute arbitrary SQL commands via the id parameter in editalbum mode.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:ace_image_hosting_script:ace_image_hosting_script:0:*:*:*:*:*:*:*

Information

Published : 2007-12-17 10:46

Updated : 2017-09-28 18:29


NVD link : CVE-2007-6393

Mitre link : CVE-2007-6393


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

ace_image_hosting_script

  • ace_image_hosting_script