Multiple SQL injection vulnerabilities in Land Down Under (LDU) 801 and earlier allow remote attackers to execute arbitrary SQL commands via the c parameter to (1) events.php, (2) index.php, or (3) list.php.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/14685 | vdb entry exploit |
http://marc.info/?l=bugtraq&m=112534574505945&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/22047 | vdb entry |