Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0498 (Bigware Shop)

BugsAlert Home > CVE-2008-0498 (Bigware Shop)
 
 

SQL injection vulnerability in main_bigware_53.tpl.php in Bigware Shop 2.0 allows remote attackers to execute arbitrary SQL commands via the pollid parameter in a results action to main_bigware_53.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0498

Learn more about CVE-2008-0498 (Bigware Shop)
 
Tags: cve-2008-0498 bigware shop

Related Items

      CVE-2008-4319 (php_filemanager)

      FrSIRT - Microsoft Office Multiple Code Execution Vulnerabilities (MS08-016)

      Red Hat update for openoffice.org

      Drupal Internationalization and Localizer Cross-Site Scripting and Request Forgery

      CVE-2008-3389 (Ingres)

      Microsoft Security Bulletin Summary for June 2007

      LANAI CMS Multiple File Extensions Vulnerability

 

Pixel