Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0385 (Urulu)

BugsAlert Home > CVE-2008-0385 (Urulu)
 
 

SQL injection vulnerability in server/widgetallocator.php in Urulu 2.1 allows remote attackers to execute arbitrary SQL commands via the connectionId parameter to index.php with (1) statprt/js/request or (2) dyn/js/request in the PATH_INFO.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0385

Learn more about CVE-2008-0385 (Urulu)
 

Related Items

      CVE-2007-6548 (RunCMS)

      CVE-2008-0830 (iPhoto)

      CVE-2007-6106 (E-Friends)

      Vuln: Samart-cms 'site.php' SQL Injection Vulnerability

      RedHat: Moderate: Red Hat Application Stack v1.3

      FrSIRT - Pidgin "msn_slplink_process_msg()" Denial of Service Vulnerability

      SuSE: samba (SUSE-SA:2007:065)

 

Pixel