Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-1336
Description:Multiple SQL injection vulnerabilities in INVOhost 3.4 allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) newlanguage parameters to site.php, (3) search parameter to manuals.php, and (4) unspecified vectors to faq.php. NOTE: some of these details are obtained from third party information.
Test IDs: 1.3.6.1.4.1.25623.1.0.901112  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-1336
BugTraq ID: 38962
http://www.securityfocus.com/bid/38962
http://www.exploit-db.com/exploits/11874
http://osvdb.org/63157
http://osvdb.org/63158
http://secunia.com/advisories/39095
XForce ISS Database: invohost-manuals-sql-injection(57162)
https://exchange.xforce.ibmcloud.com/vulnerabilities/57162
XForce ISS Database: invohost-site-sql-injection(57161)
https://exchange.xforce.ibmcloud.com/vulnerabilities/57161




© 1998-2025 E-Soft Inc. All rights reserved.