SQL injection vulnerability in Geeklog before 1.3.11 allows remote attackers to execute arbitrary SQL commands via user comments for an article.
Link | Tags |
---|---|
http://www.geeklog.net/article.php/geeklog-1.3.11sr1 | patch vendor advisory |
http://secunia.com/advisories/15914 | third party advisory |
http://www.hardened-php.net/advisory-062005.php | patch vendor advisory |
http://securitytracker.com/id?1014381 | vdb entry |