CVE-2008-6329 Information

Description

SQL injection vulnerability in Employee/login.asp in Pre ASP Job Board allows remote attackers to execute arbitrary SQL commands via the (1) Username and (2) Password parameters as reachable from Employee/emp_login.asp. NOTE: some of these details are obtained from third party information.

Reference

http://secunia.com/advisories/32785 http://www.securityfocus.com/bid/32366 http://www.vupen.com/english/advisories/2008/3218 https://exchange.xforce.ibmcloud.com/vulnerabilities/46736 https://www.exploit-db.com/exploits/7164

Share on: