CVE-2008-6851 Information

Description

SQL injection vulnerability in page.php in PHP Link Directory (phpLD) 3.3 when register_globals is enabled and magic_quotes_gpc is disabled allows remote attackers to execute arbitrary SQL commands via the name parameter.

Reference

http://www.securityfocus.com/bid/32989 https://exchange.xforce.ibmcloud.com/vulnerabilities/47580 https://www.exploit-db.com/exploits/7558

Share on: