CVE-2004-2240

Multiple SQL injection vulnerabilities in Phorum 5.0.11 and earlier allow remote attackers to modify SQL statements via (1) the query string in read.php or (2) unknown vectors in file.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:phorum:phorum:5.0.11:*:*:*:*:*:*:*

History

20 Nov 2024, 23:52

Type Values Removed Values Added
References () http://phorum.org/cvs-changelog-5.txt - () http://phorum.org/cvs-changelog-5.txt -
References () http://secunia.com/advisories/12980 - Vendor Advisory () http://secunia.com/advisories/12980 - Vendor Advisory
References () http://securitytracker.com/id?1011921 - Exploit () http://securitytracker.com/id?1011921 - Exploit
References () http://www.maxpatrol.com/advdetails.asp?id=15 - Exploit, Vendor Advisory () http://www.maxpatrol.com/advdetails.asp?id=15 - Exploit, Vendor Advisory
References () http://www.maxpatrol.com/mp_advisory.asp - () http://www.maxpatrol.com/mp_advisory.asp -
References () http://www.osvdb.org/11129 - Exploit, Patch () http://www.osvdb.org/11129 - Exploit, Patch
References () http://www.securityfocus.com/bid/11538 - () http://www.securityfocus.com/bid/11538 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/17847 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/17847 -

Information

Published : 2004-12-31 05:00

Updated : 2024-11-20 23:52


NVD link : CVE-2004-2240

Mitre link : CVE-2004-2240

CVE.ORG link : CVE-2004-2240


JSON object : View

Products Affected

phorum

  • phorum