CVE-2007-2971 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in getnewsitem.php in gCards 1.46 and earlier allows remote attackers to execute arbitrary SQL commands via the newsid parameter.
Reference
http://marc.info/?l=bugtraq&m=120880332905213&w=2 http://marc.info/?l=bugtraq&m=120881500629066&w=2 http://osvdb.org/36317 http://secunia.com/advisories/25452 http://www.securityfocus.com/bid/24175 http://www.vupen.com/english/advisories/2007/1961 https://exchange.xforce.ibmcloud.com/vulnerabilities/34529 https://exchange.xforce.ibmcloud.com/vulnerabilities/41927 https://www.exploit-db.com/exploits/3988
Share on: