Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3762 (php_live_helper)

BugsAlert Home > CVE-2008-3762 (php_live_helper)
 
 

SQL injection vulnerability in onlinestatus_html.php in Turnkey PHP Live Helper 2.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the dep parameter, related to lack of input sanitization in the get function in global.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3762

Learn more about CVE-2008-3762 (php_live_helper)
 
Tags: cve-2008-3762 php live helper

Related Items

      Fedora update for viewvc

      milliscripts Redirection "cat" Cross-Site Scripting Vulnerability

      BlueZ SDP Processing Vulnerability

      Intermate WinIPDS Directory Traversal and Denial of Service Vulnerabilities

      FrSIRT - Slackware Security Update Fixes PHP Code Execution Vulnerabilities

      UPS Spam: Trojan Courier of Choice

      PHPizabi "id" Information Disclosure and Manipulation

 

Pixel