Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

ZeusCMS SQL Injection Vulnerability and Information Disclosure Vulnerability

ZeusCMS is prone to an SQL-injection vulnerability and an information-disclosure vulnerability because the application fails to sufficiently sanitize user-supplied data.

A successful attack could allow an attacker to obtain sensitive information, compromise the application, access or modify data, or exploit vulnerabilities in the underlying database.

ZeusCMS 0.3 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus