Multiple SQL injection vulnerabilities in index.php in PHPAccounts 0.5 allow remote attackers to execute arbitrary SQL commands via the (1) Outgoing_Type_ID, (2) Outgoing_ID, (3) Project_ID, (4) Client_ID, (5) Invoice_ID, or (6) Vendor_ID parameter.
References
Configurations
History
21 Nov 2024, 00:33
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/35980 - | |
References | () http://pridels-team.blogspot.com/2007/06/phpaccounts-vuln.html - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/35028 - |
Information
Published : 2007-06-22 18:30
Updated : 2025-04-09 00:30
NVD link : CVE-2007-3345
Mitre link : CVE-2007-3345
CVE.ORG link : CVE-2007-3345
JSON object : View
Products Affected
php_accounts
- php_accounts
CWE