RSS   Vulnerabilities for 'Aimstats'   RSS

2007-04-22
 
CVE-2007-2168

 

 
Static code injection vulnerability in process.php in AimStats 3.2 and earlier allows remote attackers to inject PHP code into config.php via the databasehost parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

 
 
CVE-2007-2167

 

 
Static code injection vulnerability in process.php in AimStats 3.2 allows remote attackers to inject PHP code into config.php via the number parameter in an update action.

 


Copyright 2017, cxsecurity.com

 

Back to Top