PHPGroupware 0.9.12 and earlier, when running with the magic_quotes_gpc feature disabled, allows remote attackers to compromise the database via a SQL injection attack.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2002-04/0036.html | mailing list exploit patch vendor advisory |
http://www.osvdb.org/5153 | vdb entry |
http://www.securityfocus.com/bid/4424 | exploit vdb entry patch vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2002-04/0143.html | mailing list |
http://www.iss.net/security_center/static/8755.php | vdb entry patch vendor advisory |