Slashcode Slash 'Environment.pm' Multiple Input Validation Vulnerabilities
|
Bugtraq ID:
|
29548
|
|
Class:
|
Input Validation Error
|
|
CVE:
|
CVE-2008-2231
CVE-2008-2553
|
|
Remote:
|
Yes
|
|
Local:
|
No
|
|
Published:
|
Jan 07 2008 12:00AM
|
|
Updated:
|
Sep 02 2008 05:05PM
|
|
Credit:
|
blackybr discovered the SQL-injection issue, the vendor disclosed the cross-site scripting issue.
|
|
Vulnerable:
|
Slashcode Slashcode 2.2.6
Slashcode Slashcode 2.2.5
Slashcode Slashcode 2.2.4
Slashcode Slashcode 2.2.3
Slashcode Slashcode 2.2.2
Slashcode Slashcode 2.2.1
Slashcode Slashcode 2.2
Slashcode Slashcode 2.1.1
Slashcode Slashcode 2.1
Slashcode Slashcode 2.0
Slashcode Slashcode 1.0.8
Debian Linux 4.0 sparc
Debian Linux 4.0 s/390
Debian Linux 4.0 powerpc
Debian Linux 4.0 mipsel
Debian Linux 4.0 mips
Debian Linux 4.0 m68k
Debian Linux 4.0 ia-64
Debian Linux 4.0 ia-32
Debian Linux 4.0 hppa
Debian Linux 4.0 arm
Debian Linux 4.0 amd64
Debian Linux 4.0 alpha
Debian Linux 4.0
|
|
|
|
Not Vulnerable:
|
|
|