Описание
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass parameters.
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass parameters.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-3190
- http://marc.info/?l=full-disclosure&m=118151087109711&w=2
- http://secunia.com/advisories/25587
- http://secunia.com/advisories/26769
- http://www.debian.org/security/2007/dsa-1374
- http://www.securityfocus.com/archive/1/471039/100/0/threaded
- http://www.securityfocus.com/bid/24414
EPSS
CVE ID
Связанные уязвимости
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass parameters.
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass parameters.
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Net ...
Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность и целостность защищаемой информации
EPSS