Bug: MDPro 1.0.76 - Multiple Remote Vulnerabilities ( Ascii Version )

Search:
WLB2

MDPro 1.0.76 - Multiple Remote Vulnerabilities

Published
Credit
Risk
2007.02.01
adex
High
CWE
CVE
Local
Remote
N/A
CVE-2007-0624
CVE-2007-0623
No
Yes

_____SQL Injection:

index.php?module=News&startrow='[sql injection]

_____Show path to script:

user.php?op=userinfo&uname='

See this note in TXT Version

Bugtraq RSS
Bugtraq
 
REDDIT
REDDIT
 
DIGG
DIGG
 
LinkedIn
LinkedIn
 
CVE RSS
CVEMAP

Copyright 2014, cxsecurity.com
Ascii Version