Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0937 (Tiny Event Module, TinyEvent)

BugsAlert Home > CVE-2008-0937 (Tiny Event Module, TinyEvent)
 
 

SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter in a print action, a different vector than CVE-2007-1811.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0937

Learn more about CVE-2008-0937 (Tiny Event Module, TinyEvent)
 
Tags: cve-2008-0937 tiny event module tinyevent

Related Items

      LightBlog "username" Local File Inclusion

      CVE-2008-1399 (Clansphere)

      FrSIRT - IBM AIX "chnfsmnt" Binary Path Local Privilege Escalation Vulnerability

      Vuln: CUPS 'HP-GL/2' Filter Remote Code Execution Vulnerability

      CVE-2007-3651 (FaName)

      CVE-2008-0108 (Office, Works, Works Suite)

      FrSIRT - Redhat Security Update Fixes Xpdf Code Execution Vulnerability

 

Pixel