Beveiligingsadvies

CVE-2005-1946

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2005-06-14 04:00:00
Laatst bijgewerkt 2024-08-07 22:06:57
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

Multiple SQL injection vulnerabilities in Invision Blog before 1.1.2 Final allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to an editentry, replyentry, or editcomment action, or (2) the mid parameter to an aboutme action.