CVE-2007-1425 Information

Description

SQL injection vulnerability in index.php in Triexa SonicMailer Pro 3.2.3 and earlier allows remote attackers to execute arbitrary SQL commands via the list parameter in an archive action.

Reference

http://osvdb.org/33986 http://secunia.com/advisories/24474 http://www.securityfocus.com/bid/22920 http://www.vupen.com/english/advisories/2007/0905 https://www.exploit-db.com/exploits/3457

Share on: