Multiple SQL injection vulnerabilities in TorrentTrader before 1.07 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) account-inbox.php, (2) account-settings.php, and possibly (3) backend/functions.php.
References
Configurations
History
21 Nov 2024, 00:35
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/26504 - Patch, Vendor Advisory | |
References | () http://www.osvdb.org/36598 - | |
References | () http://www.osvdb.org/36599 - | |
References | () http://www.osvdb.org/36600 - | |
References | () http://www.securityfocus.com/bid/25369 - | |
References | () http://www.torrenttrader.org/index.php?showtopic=5776 - | |
References | () http://www.torrenttrader.org/index.php?showtopic=6255 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/36119 - |
Information
Published : 2007-08-20 22:17
Updated : 2024-11-21 00:35
NVD link : CVE-2007-4435
Mitre link : CVE-2007-4435
CVE.ORG link : CVE-2007-4435
JSON object : View
Products Affected
torrenttrader
- torrenttrader
CWE