content.pl script in NCM Content Management System allows remote attackers to read arbitrary contents of the content database by inserting SQL characters into the id parameter.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2001-04/0223.html | mailing list exploit vendor advisory |
http://www.securityfocus.com/bid/2584 | exploit vdb entry patch vendor advisory |