Mambo CMS 'zorder' Parameter SQL Injection Vulnerability

Bugtraq ID: 49130
Class: Input Validation Error
CVE: CVE-2011-2917
Remote: Yes
Local: No
Published: Aug 11 2011 12:00AM
Updated: Dec 13 2011 06:28PM
Credit: Aung Khant
Vulnerable: Mambo Mambo Open Source 4.6.5
Mambo Mambo Open Source 4.6.4
Mambo Mambo Open Source 4.6.3
Mambo Mambo Open Source 4.6.2
Mambo Mambo Open Source 4.6.1
Mambo Mambo Open Source 4.6 CVS
Mambo Mambo Open Source 4.6
Mambo Mambo Open Source 4.6.0 rc2
Mambo Mambo Open Source 4.6.0 rc1
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus