Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2428 (TorrentTrader Classic)

BugsAlert Home > CVE-2008-2428 (TorrentTrader Classic)
 
 

Multiple SQL injection vulnerabilities in TorrentTrader 1.08 Classic allow remote attackers to execute arbitrary SQL commands via the (1) email or (2) wantusername parameter to account-signup.php, or the (3) receiver parameter to account-inbox.php in a msg action.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2428

Learn more about CVE-2008-2428 (TorrentTrader Classic)
 
Tags: cve-2008-2428 torrenttrader classic

Related Items

      rPath update for tetex

      Trojan-Downloader.VBS.Psyme.ef

      Apple Mac OS X Security Update Fixes Multiple Vulnerabilities

      Vuln: Academic Web Tools CMS 1.4.2.8 Multiple Input Validation Vulnerabilities

      FrSIRT - Sony ImageStation AxRUploadControl "SetLogging()" Buffer Overflow

      CVE-2008-0309 (Symantec AntiVirus Network Attached Storage, Symantec AntiVirus Scan Engine, Syma...)

      Vuln: HyperStop WebHost Directory Database Disclosure Vulnerability

 

Pixel