Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-1550
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-1550

Description:
Multiple SQL injection vulnerabilities in phpx 3.5.15 allow remote attackers to execute arbitrary SQL commands via the (1) image_id or (2) cat_id parameter to (a) gallery.php; the (3) news_id parameter to (b) news.php or (c) print.php; (4) the news_cat_id parameter to news.php; the (5) cat_id, (6) topic_id, or (7) post_id parameter to (d) forums.php; or (8) the user_id parameter to (e) users.php.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/33155

SREASON
  http://securityreason.com/securityalert/2457

SAID
  Secunia Advisory: SA24565

OSVDB
  34416
  34417
  34415
  34414
  34418

BUGTRAQ
  http://www.securityfocus.com/archive/1/archive/1/463192/100/0/threaded

BID
  23033


Return to the previous page.