SQL injection vulnerability in AjaxPortal 3.0, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the 'Search' field, a different vulnerability than CVE-2006-3515.
Link | Tags |
---|---|
http://secunia.com/advisories/20985 | third party advisory vendor advisory |
http://www.osvdb.org/27068 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/27644 | vdb entry |
http://www.securityfocus.com/archive/1/439614 | mailing list exploit |