Powie's PForum SQL Injection User Authentication Vulnerability

Solution:
PHP has a configuration option titled "MagicQuotes". It can be enabled in php.ini with the "magic_quotes_gpc" setting. This filters quote injection attempts.

Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com <mailto:vuldb@securityfocus.com>.



 

Privacy Statement
Copyright 2010, SecurityFocus