SQL injection vulnerability in login.php in Ryan Haudenschilt Battle.net Clan Script for PHP 1.5.1 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) user or (2) pass parameter.
References
Configurations
History
21 Nov 2024, 00:29
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/34747 - | |
References | () http://secunia.com/advisories/24838 - | |
References | () http://www.securityfocus.com/bid/23383 - | |
References | () http://www.vupen.com/english/advisories/2007/1313 - | |
References | () https://www.exploit-db.com/exploits/3691 - |
Information
Published : 2007-04-10 23:19
Updated : 2024-11-21 00:29
NVD link : CVE-2007-1909
Mitre link : CVE-2007-1909
CVE.ORG link : CVE-2007-1909
JSON object : View
Products Affected
ryan_haudenschilt
- battle.net_clan_script
CWE