Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2843 (cms)

BugsAlert Home > CVE-2008-2843 (cms)
 
 

Multiple SQL injection vulnerabilities in doITLive CMS 2.50 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter in an USUB action to default.asp and the (2) Licence[SpecialLicenseNumber] (aka LicenceId) cookie to edit/default.asp.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2843

Learn more about CVE-2008-2843 (cms)
 
Tags: cve-2008-2843 cms

Related Items

      Phishing Protection will no longer work for Firefox 2

      Vuln: Gallery Prior to 2.2.6 Multiple Vulnerabilities

      Mitchell Baker: 7 years of Mozilla product releases

      CVE-2008-2733 (adaptive_security_appliance_5500, PIX)

      Jonathan DiCarlo: Ubiquity User Testing Reveals Desperate Need for Better First-Run Experience

      Bugtraq: Re: Trillian SSL Certificate Vulnerability

      CVE-2008-7021 (jobs_portal_script)

 

Pixel