Pages: [1]
|
 |
|
Author
|
Topic: phpWebSite "module" Parameter Remote SQL Injection Vulnerability (Read 736 times)
|
|
TJ
|
* Technical Description * A vulnerability was identified in phpWebSite, which may be exploited by remote attackers to execute arbitrary SQL commands. This flaw is due to an input validation error when processing a specially crafted "module" parameter, which may be exploited by remote users to conduct SQL injection attacks. * Affected Products * phpWebSite version 0.10.1 and prior * Solution * No official supplied patch for this issue. * References * http://www.frsirt.com/english/advisories/2005/1440
|
|
|
|
|
Logged
|
|
|
|
|
Pages: [1]
|
|
|
 |