CVE-2001-1460

SQL injection vulnerability in article.php in PostNuke 0.62 through 0.64 allows remote attackers to bypass authentication via the user parameter.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:postnuke_software_foundation:postnuke:0.62:*:*:*:*:*:*:*
cpe:2.3:a:postnuke_software_foundation:postnuke:0.63:*:*:*:*:*:*:*
cpe:2.3:a:postnuke_software_foundation:postnuke:0.64:*:*:*:*:*:*:*

History

20 Nov 2024, 23:37

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2001-10/0088.html - Exploit, Patch () http://archives.neohapsis.com/archives/bugtraq/2001-10/0088.html - Exploit, Patch
References () http://archives.neohapsis.com/archives/bugtraq/2001-10/0091.html - () http://archives.neohapsis.com/archives/bugtraq/2001-10/0091.html -
References () http://www.kb.cert.org/vuls/id/921547 - Third Party Advisory, US Government Resource () http://www.kb.cert.org/vuls/id/921547 - Third Party Advisory, US Government Resource
References () http://www.securityfocus.com/bid/3435 - Patch () http://www.securityfocus.com/bid/3435 - Patch
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/7280 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/7280 -

Information

Published : 2001-10-13 04:00

Updated : 2025-04-03 01:03


NVD link : CVE-2001-1460

Mitre link : CVE-2001-1460

CVE.ORG link : CVE-2001-1460


JSON object : View

Products Affected

postnuke_software_foundation

  • postnuke