CVE-2007-1607

search.php in w-Agora (Web-Agora) allows remote attackers to obtain potentially sensitive information via a ' (quote) value followed by certain SQL sequences in the (1) search_forum or (2) search_user parameter, which force a SQL error.
Configurations

Configuration 1 (hide)

cpe:2.3:a:w-agora:w-agora:4.2.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-03-22 23:19

Updated : 2024-02-04 17:13


NVD link : CVE-2007-1607

Mitre link : CVE-2007-1607

CVE.ORG link : CVE-2007-1607


JSON object : View

Products Affected

w-agora

  • w-agora