CVE-2005-4630
CVE-2005-4630
SQL injection vulnerability in index.php in ClientExec 2.3 allows remote attackers to execute arbitrary SQL commands via the (1) billshowid, (2) billdetailid, (3) fuse, and (4) frmClientID parameters.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
http://pridels0.blogspot.com/2005/11/clientexec-2x-multiple-sql-inj.htmlhttp://secunia.com/advisories/17756https://exchange.xforce.ibmcloud.com/vulnerabilities/23271http://www.ce-talk.com/showthread.php?t=653http://www.clientexec.com/forum/showthread.php?t=8006http://www.osvdb.org/21163http://www.vupen.com/english/advisories/2005/2628