Multiple SQL injection vulnerabilities in NetArtMedia Jobs Portal 1.3 allow remote attackers to execute arbitrary SQL commands via (1) the job parameter to index.php in the search module or (2) the news_id parameter to index.php.
References
Configurations
History
21 Nov 2024, 00:55
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/31937 - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/31281 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/45272 - | |
References | () https://www.exploit-db.com/exploits/6517 - |
Information
Published : 2009-02-03 11:30
Updated : 2025-04-09 00:30
NVD link : CVE-2008-6030
Mitre link : CVE-2008-6030
CVE.ORG link : CVE-2008-6030
JSON object : View
Products Affected
netartmedia
- jobs_portal
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')