CVE-2007-3909

Multiple SQL injection vulnerabilities in Bandersnatch 0.4 allow remote attackers to execute arbitrary SQL commands via the (1) date and (2) limit parameters to index.php, and other unspecified vectors.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bandersnatch:bandersnatch:0.4:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-07-19 17:30

Updated : 2024-02-28 11:01


NVD link : CVE-2007-3909

Mitre link : CVE-2007-3909

CVE.ORG link : CVE-2007-3909


JSON object : View

Products Affected

bandersnatch

  • bandersnatch
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')