CVE-2006-3244 Information

Description

Multiple SQL injection vulnerabilities in Anthill 0.2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) order parameter in buglist.php and the (2) bug parameter in query.php.

Reference

http://pridels0.blogspot.com/2006/06/anthill-sql-injection-vuln.html http://secunia.com/advisories/20838 http://www.securityfocus.com/bid/18661 http://www.vupen.com/english/advisories/2006/2529 https://exchange.xforce.ibmcloud.com/vulnerabilities/27373

Share on: