RSS   Vulnerabilities for 'Cwguestbook'   RSS

2009-07-02
 
CVE-2009-2307

 

 
SQL injection vulnerability in the CWGuestBook module 2.1 and earlier for MAXdev MDPro (aka MD-Pro) allows remote attackers to execute arbitrary SQL commands via the rid parameter in a viewrecords action to modules.php.

 

 >>> Vendor: Maxdev 5 Products
Md-pro
Mdforum
Mdpro
My egallery
Cwguestbook


Copyright 2024, cxsecurity.com

 

Back to Top