Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0397 (aflog)

BugsAlert Home > CVE-2008-0397 (aflog)
 
 

Multiple SQL injection vulnerabilities in aflog 1.01, and possibly earlier versions, allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to comments.php and (2) an unspecified parameter to view.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0397

Learn more about CVE-2008-0397 (aflog)
 
Tags: cve-2008-0397 aflog

Related Items

      Websense "username" Cross-Site Scripting Vulnerability

      Bugtraq: rPSA-2008-0181-1 openssl openssl-scripts

      CVE-2008-1163 (phpArcadeScript)

      In The Virtual Crime World, Merrill Lynch Follows Wachovia?s Fate

      POSSIBLE_OTORUN1

      Red Hat update for openoffice.org

      FrSIRT - phpMyAdmin REQUEST Superglobal Remote SQL Query Injection Issue

 

Pixel