SQL injection vulnerability in This HTML Is Simple (THIS) before 1.2.4 allows remote to execute arbitrary SQL commands via vectors related to op=page&id= in the URL.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:53
Type | Values Removed | Values Added |
---|---|---|
References | () http://freecode.com/projects/this/releases/353516 - | |
References | () http://osvdb.org/91976 - | |
References | () http://xforce.iss.net/xforce/xfdb/84168 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/84168 - |
16 Mar 2022, 16:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | SQL injection vulnerability in This HTML Is Simple (THIS) before 1.2.4 allows remote to execute arbitrary SQL commands via vectors related to op=page&id= in the URL. |
Information
Published : 2013-05-10 21:55
Updated : 2025-04-11 00:51
NVD link : CVE-2013-3523
Mitre link : CVE-2013-3523
CVE.ORG link : CVE-2013-3523
JSON object : View
Products Affected
gajennings
- this
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')