CoolForum 0.8.1 beta and earlier allows remote attackers to manipulate SQL commands via certain requests to (1) alert.php or (2) viewip.php, possibly due to a SQL injection vulnerability.
Link | Tags |
---|---|
http://seclists.org/lists/bugtraq/2005/Mar/0358.html | mailing list |
http://securitytracker.com/id?1013474 | patch vdb entry exploit |