Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
SQL-Injection in e107 allows attacker to become a site admininstrator May 13 2006 11:04AM
socsam linuxmail org
Software: e107 (CMS)

Versions: <= 0.7.2

Type: SQL-injection

Homepage: www.e107.org

Description:

----------------------------

SQL-Injection in e107 allows attacker to become a site admininstrator.

Requirements:

----------------------------

Magic_quotes_gpc = Off

...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus