RSS   Vulnerabilities for 'Asp photo gallery'   RSS

2008-01-15
 
CVE-2008-0256

CWE-89
 

 
Multiple SQL injection vulnerabilities in Matteo Binda ASP Photo Gallery 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) Imgbig.asp, (b) thumb.asp, and (c) thumbricerca.asp and the (2) ricerca parameter to (d) thumbricerca.asp.

 


Copyright 2017, cxsecurity.com