CVE-2008-1874 Information

Description

SQL injection vulnerability in account/user/mail.html in Xpoze Pro 3.05 and earlier allows remote authenticated users to execute arbitrary SQL commands via the reed parameter.

Reference

http://secunia.com/advisories/29700 http://www.securityfocus.com/bid/28618 https://exchange.xforce.ibmcloud.com/vulnerabilities/41656 https://www.exploit-db.com/exploits/5358

Share on: