![]() | |
| |||||||
| Home | Register | Projects | Blogs | FAQ | Calendar | Search | Today's Posts | Mark Forums Read | Free Directory | Free DNSReport | Tags |
| Notices |
| Advisories Discuss about all newly security flaws classed by CVE entries and reviewed by security experts |
CVE-2007-6498 (Hosting Controller)This is a discussion on "CVE-2007-6498 (Hosting Controller)" within the Advisories part of the Computer Security: Discussions section; Multiple SQL injection vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) email and (2) loginname parameters to Hosting/Addreseller.asp, (3) the sortfield parameter ... |
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Multiple SQL injection vulnerabilities in Hosting Controller 6.1 Hot fix 3.3 and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) email and (2) loginname parameters to Hosting/Addreseller.asp, (3) the sortfield parameter to accounts/accountmanager.asp, (4) the GateWayID parameter to OpenApi/GatewayVariables.asp, and possibly (5) unspecified vectors to IIS/iibind.asp. More... |
| Sponsor | ||
| ||
| |
![]() |
| | |
| controller, cve20076498, hosting | |
| Thread Tools | |
| Display Modes | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| CVE-2007-6504 (Hosting Controller) | Heap | Advisories | 0 | 21-12-07 20:09 |
| CVE-2007-6503 (Hosting Controller) | Heap | Advisories | 0 | 21-12-07 20:09 |
| CVE-2007-6500 (Hosting Controller) | Heap | Advisories | 0 | 21-12-07 20:09 |
| CVE-2007-6497 (Hosting Controller) | Heap | Advisories | 0 | 21-12-07 20:09 |
| CVE-2007-6496 (Hosting Controller) | Heap | Advisories | 0 | 21-12-07 20:09 |