Описание
Multiple SQL injection vulnerabilities in Dora Emlak 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) emlak_detay.asp and (b) haber_detay.asp, the (2) kategori parameter to (c) kategorisirala.asp, and the (3) tip parameter to (d) tipsirala.asp.
Multiple SQL injection vulnerabilities in Dora Emlak 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) emlak_detay.asp and (b) haber_detay.asp, the (2) kategori parameter to (c) kategorisirala.asp, and the (3) tip parameter to (d) tipsirala.asp.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-6140
- https://exchange.xforce.ibmcloud.com/vulnerabilities/38634
- http://osvdb.org/38820
- http://osvdb.org/38821
- http://osvdb.org/38822
- http://secunia.com/advisories/27812
- http://www.packetstormsecurity.org/0711-exploits/dora-sql.txt
- http://www.securityfocus.com/bid/26574
- http://www.vupen.com/english/advisories/2007/4000
Связанные уязвимости
Multiple SQL injection vulnerabilities in Dora Emlak 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) emlak_detay.asp and (b) haber_detay.asp, the (2) kategori parameter to (c) kategorisirala.asp, and the (3) tip parameter to (d) tipsirala.asp.