Multiple SQL injection vulnerabilities in PsNews 1.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) ndetail.php and (2) print.php.
References
Configurations
History
No history.
Information
Published : 2010-07-13 18:30
Updated : 2024-02-28 11:41
NVD link : CVE-2010-2716
Mitre link : CVE-2010-2716
CVE.ORG link : CVE-2010-2716
JSON object : View
Products Affected
rich_kavanagh
- psnews
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')