Multiple SQL injection vulnerabilities in PHP Newsfeed 20040723 allow remote attackers to execute arbitrary SQL commands via the (1) name parameter to (a) deltables.php, (2) select, (3) header, (4) url, (5) source, or (6) time parameters to (b) manualsubmit.php, (7) num parameter to (c) delete.php, or (8) tablename parameter to (d) searchnews.php.
References
Configurations
History
No history.
Information
Published : 2006-05-02 10:02
Updated : 2017-07-20 01:31
NVD link : CVE-2006-2139
Mitre link : CVE-2006-2139
CVE.ORG link : CVE-2006-2139
JSON object : View
Products Affected
wilsonncareabusinesses
- php_newsfeed
CWE