CVE-2007-6058 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) codes action in the profile-codes module (2) videos action in the video-codes module or (3) games action in the arcade-games module.
Reference
http://advisories.echo.or.id/adv/adv84-K-159-2007.txt http://secunia.com/advisories/27730 http://www.securityfocus.com/archive/1/483889/100/0/threaded http://www.securityfocus.com/bid/26490 http://www.vupen.com/english/advisories/2007/3908 https://exchange.xforce.ibmcloud.com/vulnerabilities/38538 https://www.exploit-db.com/exploits/4627
Share on: