CVE-2000-0125

wwwthreads does not properly cleanse numeric data or table names that are passed to SQL queries, which allows remote attackers to gain privileges for wwwthreads forums.
Configurations

Configuration 1 (hide)

cpe:2.3:a:wired_community_software:wwwthreads:*:*:*:*:*:*:*:*

History

07 Nov 2023, 01:55

Type Values Removed Values Added
References
  • {'url': 'http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10002031027120.15921-100000@eight.wiretrip.net', 'name': '20000203 RFP2K01 - "How I hacked Packetstorm" (wwwthreads advisory)', 'tags': [], 'refsource': 'BUGTRAQ'}
  • () http://www.securityfocus.com/templates/archive.pike?list=1&msg=Pine.LNX.4.10.10002031027120.15921-100000%40eight.wiretrip.net -

Information

Published : 2000-02-03 05:00

Updated : 2024-02-28 10:24


NVD link : CVE-2000-0125

Mitre link : CVE-2000-0125

CVE.ORG link : CVE-2000-0125


JSON object : View

Products Affected

wired_community_software

  • wwwthreads