SQL injection vulnerability in PhotoPost PHP Pro 5.x may allow remote attackers to execute arbitrary SQL commands via (1) the sl parameter to showmembers.php or (2) the photo parameter to showphoto.php.
References
Configurations
History
20 Nov 2024, 23:56
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=111205342909640&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=111213719017716&w=2 - | |
References | () http://secunia.com/advisories/14742 - | |
References | () http://securitytracker.com/id?1013581 - | |
References | () http://www.osvdb.org/15099 - | |
References | () http://www.osvdb.org/15100 - |
Information
Published : 2005-05-02 04:00
Updated : 2024-11-20 23:56
NVD link : CVE-2005-0929
Mitre link : CVE-2005-0929
CVE.ORG link : CVE-2005-0929
JSON object : View
Products Affected
photopost
- photopost_php_pro
CWE