![]() | |
| |||||||
| Home | Register | Projects | Blogs | FAQ | Calendar | Search | Today's Posts | Mark Forums Read | Free Directory | Free DNSReport | Tags |
| Notices |
| Advisories Discuss about all newly security flaws classed by CVE entries and reviewed by security experts |
CVE-2008-1841 (Coppermine Photo Gallery)This is a discussion on "CVE-2008-1841 (Coppermine Photo Gallery)" within the Advisories part of the Computer Security: Discussions section; SQL injection vulnerability in the session handling functionality in bridge/coppermine.inc.php in Coppermine Photo Gallery (CPG) 1.4.17 and earlier allows remote attackers to execute arbitrary SQL commands via an input field associated with the session_id variable, ... |
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| SQL injection vulnerability in the session handling functionality in bridge/coppermine.inc.php in Coppermine Photo Gallery (CPG) 1.4.17 and earlier allows remote attackers to execute arbitrary SQL commands via an input field associated with the session_id variable, as exploited in the wild in April 2008. NOTE: the fix for CVE-2008-1840 was intended to address this vulnerability, but is actually inapplicable. More... |
| Sponsor | ||
| ||
| |
![]() |
| Thread Tools | |
| Display Modes | |
| |
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| CVE-2008-1840 (Coppermine Photo Gallery) | Heap | Advisories | 0 | 17-04-08 18:45 |
| CVE-2008-0506 (Coppermine Photo Gallery) | Heap | Advisories | 0 | 01-02-08 20:09 |
| CVE-2008-0505 (Coppermine Photo Gallery) | Heap | Advisories | 0 | 01-02-08 20:09 |
| CVE-2008-0504 (Coppermine Photo Gallery) | Heap | Advisories | 0 | 01-02-08 20:09 |
| CVE-2007-5888 (Coppermine Photo Gallery) | Heap | Advisories | 0 | 08-11-07 13:57 |