Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

aliTalk Multiple SQL Injection And Access Validation Vulnerabilties

aliTalk is prone to multiple SQL-injection vulnerabilities and an access-validation issue because it fails to adequately sanitize user supplied input.

A successful exploit may allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database.

aliTalk 1.9.1.1 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus