Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-2608
Description:Multiple SQL injection vulnerabilities in PHP Address Book 4.0.x allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to delete.php or (2) alphabet parameter to index.php. NOTE: the edit.php and view.php vectors are already covered by CVE-2008-2565.
Test IDs: 1.3.6.1.4.1.25623.1.0.900698  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-2608
BugTraq ID: 35511
http://www.securityfocus.com/bid/35511
Bugtraq: 20090626 MULTIPLE SQL INJECTION VULNERABILITIES --PHP-AddressBook v-4.0.x--> (Google Search)
http://www.securityfocus.com/archive/1/504595/100/0/threaded
http://www.exploit-db.com/exploits/9023
http://secunia.com/advisories/35590




© 1998-2025 E-Soft Inc. All rights reserved.