PL-PHP Multiple Input Validation Vulnerabilities

pL-PHP is prone to multiple input-validation vulnerabilities, including an unauthorized-access issue and an SQL-injection issue, because it fails to sufficiently sanitize user-supplied data.

Exploiting these issues could allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation.

pL-PHP beta 0.9 is affected; other versions may also be vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus