SQL injection vulnerability in search.php in WSN Guest 1.23 allows remote attackers to execute arbitrary SQL commands via the search parameter in an advanced action.
References
Configurations
History
21 Nov 2024, 01:00
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/33097 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/47723 - | |
References | () https://www.exploit-db.com/exploits/7659 - |
Information
Published : 2009-02-23 15:30
Updated : 2024-11-21 01:00
NVD link : CVE-2009-0704
Mitre link : CVE-2009-0704
CVE.ORG link : CVE-2009-0704
JSON object : View
Products Affected
webmastersite
- wsn_guest
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')