SQL injection vulnerability in forum.php in PHPWebThings 1.4 allows remote attackers to execute arbitrary SQL commands via the msg parameter, a different vulnerability than CVE-2005-3585.
Link | Tags |
---|---|
http://rgod.altervista.org/phpwebth14_xpl.html | exploit |
https://www.exploit-db.com/exploits/1324 | exploit |
http://www.securityfocus.com/bid/15465 | vdb entry |