game_score.php in e107 allows remote attackers to insert high scores via HTTP POST methods utilizing the $player_name, $player_score, and $game_name variables.
References
Configurations
History
21 Nov 2024, 00:02
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=113141422014568&w=2 - | |
References | () http://securityreason.com/securityalert/158 - |
Information
Published : 2005-11-16 07:42
Updated : 2024-11-21 00:02
NVD link : CVE-2005-3594
Mitre link : CVE-2005-3594
CVE.ORG link : CVE-2005-3594
JSON object : View
Products Affected
e107
- e107
CWE