CVE-2007-3783 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in default.asp in enVivo!CMS allows remote attackers to execute arbitrary SQL commands via the ID parameter in an article action. NOTE: this is probably different from CVE-2005-1413.4.
Reference
http://lists.grok.org.uk/pipermail/full-disclosure/2007-July/064555.html http://osvdb.org/36246 http://secunia.com/advisories/26020 http://securityreason.com/securityalert/2897 http://securityvulns.ru/Rdocument425.html http://www.securityfocus.com/archive/1/473355/100/0/threaded http://www.vupen.com/english/advisories/2007/2503 https://exchange.xforce.ibmcloud.com/vulnerabilities/35342
Share on: