CVE-2008-1759 Information

Description

SQL injection vulnerability in the jeuxflash module for KwsPHP allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php a different vector than CVE-2007-4922.

Reference

http://koogar.alorys-hebergement.com/kwsphp/modules/maintenance/index.php http://secunia.com/advisories/29625 http://www.securityfocus.com/bid/28601 https://exchange.xforce.ibmcloud.com/vulnerabilities/41635 https://www.exploit-db.com/exploits/5352

Share on: