Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-2916 (pre_ads_portal)

BugsAlert Home > CVE-2008-2916 (pre_ads_portal)
 
 

Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) cid parameter to showcategory.php and the (2) id parameter to software-description.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-2916

Learn more about CVE-2008-2916 (pre_ads_portal)
 
Tags: cve-2008-2916 pre ads portal

Related Items

      Fedora update for flac

      HP OpenView Network Node Manager Cross Site Scripting Vulnerability

      Trojan-Downloader.VBS.Psyme.iq

      CVE-2007-5854 (Mac OS X)

      Avaya CMS Solaris namefs Kernel Module Privilege Escalation

      CVE-2007-6650 (R2 CMS)

      AlstraSoft AskMe Pro SQL Injection Vulnerabilities

 

Pixel