RSS   Vulnerabilities for 'Phpdirectorysource'   RSS

2008-05-13
 
CVE-2008-2177

CWE-89
 

 
Multiple SQL injection vulnerabilities in phpDirectorySource 1.1.06, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) lid parameter to show.php and the (2) login parameter to admin.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top