RSS   Vulnerabilities for 'Faphoto'   RSS

2008-04-09
 
CVE-2008-1714

CWE-89
 

 
SQL injection vulnerability in show.php in FaScript FaPhoto 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter.

 

 >>> Vendor: Fascript 6 Products
Faname
Fapersian petition
Fapersianhack
Famp3
Faphoto
Faupload


Copyright 2024, cxsecurity.com

 

Back to Top