![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2008-0504 |
Description: | Multiple SQL injection vulnerabilities in Coppermine Photo Gallery (CPG) before 1.4.15 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) albumid, (2) startpic, and (3) numpics parameters to util.php; and (4) cid_array parameter to reviewcom.php. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.60453 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-0504 BugTraq ID: 27509 http://www.securityfocus.com/bid/27509 Bugtraq: 20080131 [waraxe-2008-SA#066] - Multiple Vulnerabilities in Coppermine 1.4.14 (Google Search) http://www.securityfocus.com/archive/1/487351/100/200/threaded http://www.waraxe.us/advisory-66.html http://www.securitytracker.com/id?1019285 http://secunia.com/advisories/28682 http://www.vupen.com/english/advisories/2008/0367 |