CVE-2008-4457 (memht_portal) [Sitemap] - HeapOverflow Computer Security Community & Forums : Heap Overflow.com

PDA

View Full Version : CVE-2008-4457 (memht_portal)


Heap
08-10-08, 02:46
SQL injection vulnerability in inc/inc_statistics.php in MemHT Portal 3.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via a stats_res cookie to index.php.

More... (http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-4457)