XOOPS XM-Memberstats Module 'letter' and 'sortby' Parameters Multiple SQL Injection Vulnerabilities

Bugtraq ID: 27979
Class: Input Validation Error
Remote: Yes
Local: No
Published: Feb 25 2008 12:00AM
Updated: Feb 26 2008 02:52AM
Credit: t0fx and an anonymous researcher is credited with the discovery of these issues.
Vulnerable: Xoops XM-Memberstats 2.0e
Not Vulnerable:


Privacy Statement
Copyright 2010, SecurityFocus