Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6266 (bcoos)

BugsAlert Home > CVE-2007-6266 (bcoos)
 
 

Multiple SQL injection vulnerabilities in bcoos 1.0.10 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the gid parameter to modules/arcade/index.php in a show_stats action, or the lid parameter to (2) modules/myalbum/ratephoto.php or (3) modules/mylinks/ratelink.php, different vectors than CVE-2007-5104.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6266

Learn more about CVE-2007-6266 (bcoos)
 
Tags: cve-2007-6266 bcoos

Related Items

      Bugtraq: [SECURITY] [DSA 1615-1] New xulrunner packages fix several vulnerabilities

      TROJ_BOAXXE.CN

      CVE-2008-4424 (goocms)

      TROJ_PUSHDO.AA

      CVE-2008-3962 (ssmtp)

      False Positive, Posssible / Likely?

      Cacti 0.8.7a Multiple Vulnerabilities

 

Pixel