RSS   Vulnerabilities for 'Duportal pro'   RSS

2005-06-22
 
CVE-2005-2045

 

 
Multiple SQL injection vulnerabilities in DUware DUportal PRO 3.4.3 allow remote attackers to execute arbitrary SQL commands via the (1) iChannel parameter to default.asp, (2) iData parameter to detail.asp, (3) iMem parameter to members.asp, (4) iCat parameter to cat.asp, (5) offset parameter to members_listing_approval.asp, or (6) iChannel parameter to channels_edit.asp.

 

 >>> Vendor: Duware 19 Products
Duclassmate
Duclassified
Duforum
Duportal
Duportal pro
Duamazon pro
Dupaypal pro
Duamazon
Duarticle
Dudirectory
Dudirectory pro
Dudirectory pro sql
Dudownload
Dugallery
Dunews
Dupaypal
Dubanner
Dupoll
Ducalendar


Copyright 2024, cxsecurity.com

 

Back to Top