Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in detail.php and the catid parameter in (2) get.php and (3) index.php.
References
Link | Resource |
---|---|
http://secunia.com/advisories/17306/ | Vendor Advisory |
http://securitytracker.com/alerts/2005/Oct/1015088.html | Exploit Vendor Advisory |
http://www.osvdb.org/20250 | |
http://www.osvdb.org/20251 | |
http://www.osvdb.org/20252 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/22827 |
Configurations
History
No history.
Information
Published : 2005-10-26 01:02
Updated : 2024-02-28 10:42
NVD link : CVE-2005-3309
Mitre link : CVE-2005-3309
CVE.ORG link : CVE-2005-3309
JSON object : View
Products Affected
zomplog
- zomplog
CWE