Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6556 (websihirbazi)

BugsAlert Home > CVE-2007-6556 (websihirbazi)
 
 

Multiple SQL injection vulnerabilities in websihirbazi 5.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to default.asp in a news page action or (2) the pageid parameter to default.asp.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6556

Learn more about CVE-2007-6556 (websihirbazi)
 
Tags: cve-2007-6556 websihirbazi

Related Items

      CVE-2008-3229 (op)

      Spam evolution: January-June 2008

      CVE-2008-4606 (ip_reg)

      ASP-CMS "cha" SQL Injection Vulnerability

      CVE-2008-3072 (Simple Machines Forum)

      Microsoft Security Advisory (953839): Cumulative Security Update of ActiveX Kill Bits - 8/13/2008

      FrSIRT - Gentoo Security Update Fixes Xine-lib Buffer Overflow Vulnerabilities

 

Pixel