SQL injection vulnerability in viewcat.php in the WF-Links (wflinks) 1.03 and earlier module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter.
References
Configurations
History
21 Nov 2024, 00:30
Type | Values Removed | Values Added |
---|---|---|
References | () http://packetstormsecurity.org/0704-exploits/xoopswflinks-sql.txt - | |
References | () http://www.securityfocus.com/archive/1/488316/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/488375/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/23340 - | |
References | () http://www.vupen.com/english/advisories/2007/1275 - | |
References | () https://www.exploit-db.com/exploits/3670 - |
Information
Published : 2007-04-30 23:19
Updated : 2025-04-09 00:30
NVD link : CVE-2007-2373
Mitre link : CVE-2007-2373
CVE.ORG link : CVE-2007-2373
JSON object : View
Products Affected
wf-links
- wf-links
CWE