CVE-2005-3309 Information

Description

Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in detail.php and the catid parameter in (2) get.php and (3) index.php.

Reference

http://secunia.com/advisories/17306/ http://securitytracker.com/alerts/2005/Oct/1015088.html http://www.osvdb.org/20250 http://www.osvdb.org/20251 http://www.osvdb.org/20252 https://exchange.xforce.ibmcloud.com/vulnerabilities/22827

Share on: