Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-7290
Description:SQL injection vulnerability in XOOPS 2.5.7.2 and other versions before 2.5.8.1 allows remote authenticated administrators to execute arbitrary SQL commands via the url parameter to findusers.php. An example attack uses "into outfile" to create a backdoor program.
Test IDs: 1.3.6.1.4.1.25623.1.0.108137  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-7290
BugTraq ID: 97230
http://www.securityfocus.com/bid/97230
https://gist.github.com/jk1986/3b304ac6b4ae52ae667bba380c2dce19




© 1998-2025 E-Soft Inc. All rights reserved.