Описание
Multiple SQL injection vulnerabilities in FAQMasterFlexPlus, possibly 1.5 or 1.52, allow remote attackers to execute arbitrary SQL commands via the category_id parameter to faq.php, and unspecified other vectors involving additional scripts.
Multiple SQL injection vulnerabilities in FAQMasterFlexPlus, possibly 1.5 or 1.52, allow remote attackers to execute arbitrary SQL commands via the category_id parameter to faq.php, and unspecified other vectors involving additional scripts.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-6634
- https://exchange.xforce.ibmcloud.com/vulnerabilities/39286
- http://lists.grok.org.uk/pipermail/full-disclosure/2007-December/059318.html
- http://osvdb.org/39665
- http://secunia.com/advisories/28248
- http://www.securityfocus.com/archive/1/485589/100/0/threaded
- http://www.securityfocus.com/bid/27052
Связанные уязвимости
nvd
около 18 лет назад
Multiple SQL injection vulnerabilities in FAQMasterFlexPlus, possibly 1.5 or 1.52, allow remote attackers to execute arbitrary SQL commands via the category_id parameter to faq.php, and unspecified other vectors involving additional scripts.