Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2087 (Web Hosting Directory Script)

BugsAlert Home > CVE-2008-2087 (Web Hosting Directory Script)
 
 

SQL injection vulnerability in search_result.php in Softbiz Web Host Directory Script, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the host_id parameter, a different vector than CVE-2005-3817.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2087

Learn more about CVE-2008-2087 (Web Hosting Directory Script)
 
Tags: cve-2008-2087 web hosting directory script

Related Items

      Vuln: Aprox CMS Engine 'index.php' SQL Injection Vulnerability

      Kaspersky Internet Security Install Problem

      CVE-2008-0493 (IrfanView)

      Online Scanner Top Twenty for May 2008

      FrSIRT - Cisco Unified Presence Remote Denial of Service Vulnerabilities

      CVE-2007-6570 (Java Web Proxy Server, Java System Web Server)

      CVE-2008-4111 (websphere_application_server)

 

Pixel