Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-7400
Description:Multiple SQL injection vulnerabilities in Exponent CMS before 2.4.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in an activate_address address controller action, (2) title parameter in a show blog controller action, or (3) content_id parameter in a showComments expComment controller action.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-7400
BugTraq ID: 93041
http://www.securityfocus.com/bid/93041
https://www.exploit-db.com/exploits/40412/
http://www.openwall.com/lists/oss-security/2016/09/18/2
http://www.openwall.com/lists/oss-security/2016/09/18/10




© 1998-2025 E-Soft Inc. All rights reserved.