Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-7049
Description:Multiple SQL injection vulnerabilities in login.asp in NatterChat 1.1 and 1.12 allow remote attackers to execute arbitrary SQL commands via the (1) txtUsername parameter (aka Username) and (2) txtPassword parameter (aka Password) in a form generated by home.asp. NOTE: due to lack of details, it is not clear whether this is related to CVE-2004-2206.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-7049
BugTraq ID: 32385
http://www.securityfocus.com/bid/32385
https://www.exploit-db.com/exploits/7172
https://www.exploit-db.com/exploits/7175
XForce ISS Database: natterchat-txtpassword-sql-injection(46748)
https://exchange.xforce.ibmcloud.com/vulnerabilities/46748




© 1998-2025 E-Soft Inc. All rights reserved.