SQL injection vulnerability in directory.php in Scripts For Sites (SFS) EZ Pub Site allows remote attackers to execute arbitrary SQL commands via the cat parameter.
References
Configurations
History
No history.
Information
Published : 2009-05-07 17:30
Updated : 2024-02-28 11:21
NVD link : CVE-2008-6794
Mitre link : CVE-2008-6794
CVE.ORG link : CVE-2008-6794
JSON object : View
Products Affected
sfs_ez_pub
- fsf_ex_pub
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')