CVE-2008-2428 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in TorrentTrader 1.08 Classic allow remote attackers to execute arbitrary SQL commands via the (1) email or (2) wantusername parameter to account-signup.php or the (3) receiver parameter to account-inbox.php in a msg action.
Reference
http://secunia.com/advisories/30565 http://secunia.com/secunia_research/2008-15/advisory/ http://sourceforge.net/project/shownotes.php?group_id=98584&release_id=545219 http://www.securityfocus.com/archive/1/493434/100/0/threaded http://www.securityfocus.com/bid/29787 http://www.torrenttrader.org/index.php?showtopic=8879 https://exchange.xforce.ibmcloud.com/vulnerabilities/43165
Share on: