RSS   Vulnerabilities for 'Bwired'   RSS

2007-07-25
 
CVE-2007-3978

 

 
Session fixation vulnerability in bwired allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.

 
 
CVE-2007-3977

 

 
Cross-site scripting (XSS) vulnerability in bwired allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

 
 
CVE-2007-3976

 

 
SQL injection vulnerability in index.php in bwired allows remote attackers to execute arbitrary SQL commands via the newsID parameter.

 


Copyright 2024, cxsecurity.com

 

Back to Top