SQL injection vulnerability in showflat.php in Groupee (formerly known as Infopop) UBB.threads 6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Number parameter.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2006-03/0494.html | mailing list |
http://www.osvdb.org/22808 | vdb entry |
http://www.securityfocus.com/bid/16520 | vdb entry |
http://securitytracker.com/id?1015549 | vdb entry exploit |
http://www.cyberlords.net/advisories/cl_ubb.txt | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24381 | vdb entry |