Heap
16-06-09, 02:42
SQL injection vulnerability in writemessage.php in Yogurt 0.3, when register_globals is enabled, allows remote authenticated users to execute arbitrary SQL commands via the original parameter.
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2034)
More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2009-2034)