CVE-2008-5641 Information

Description

SQL injection vulnerability in account.asp in Active Photo Gallery 6.2 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

Reference

http://secunia.com/advisories/32901 http://securityreason.com/securityalert/4767 http://www.vupen.com/english/advisories/2008/3297 https://www.exploit-db.com/exploits/7299

Share on: