SQL injection vulnerability in marks.php in NukeBookmarks 0.6 for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the category parameter.
Link | Tags |
---|---|
http://nukebookmarks.sourceforge.net/ | |
http://zone-h.org/advisories/read/id=7356 | exploit vendor advisory |
http://marc.info/?l=bugtraq&m=111186145609320&w=2 | mailing list |