SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execute arbitrary SQL code via the (1) clipid or (2) catid parameters in a viewclip, viewcat, or voteclip action.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/15979 | vdb entry |
http://marc.info/?l=bugtraq&m=108308660628557&w=2 | mailing list |
http://www.securityfocus.com/bid/10215 | vendor advisory vdb entry exploit |