SQL injection vulnerability in index.php in the Publisher module 2.0 for Miniweb allows remote attackers to execute arbitrary SQL commands via the historymonth parameter.
References
Configurations
History
21 Nov 2024, 01:07
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.exploit-db.com/exploits/9338 - | |
References | () http://www.securityfocus.com/bid/35869 - Exploit |
Information
Published : 2009-09-25 22:30
Updated : 2024-11-21 01:07
NVD link : CVE-2009-3419
Mitre link : CVE-2009-3419
CVE.ORG link : CVE-2009-3419
JSON object : View
Products Affected
intesync
- miniweb
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')