CVE-2008-4497 Information

Description

SQL injection vulnerability in event_detail.php in Built2Go Real Estate Listings 1.5 allows remote attackers to execute arbitrary SQL commands via the event_id parameter.

Reference

http://secunia.com/advisories/32129 http://securityreason.com/securityalert/4373 http://www.securityfocus.com/bid/31628 https://exchange.xforce.ibmcloud.com/vulnerabilities/45736 https://www.exploit-db.com/exploits/6697

Share on: