Back to search
CVE-2007-0865
Published: Feb 9, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
SQL injection vulnerability in comments.php in LushiNews 1.01 and earlier allows remote authenticated users to inject arbitrary SQL commands via the id parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
3287
exploit
x_refsource_EXPLOIT-DB
lushinews-comments-sql-injection(32360)
vdb-entry
x_refsource_XF
22469
vdb-entry
x_refsource_BID
24081
third-party-advisory
x_refsource_SECUNIA
ADV-2007-0539
vdb-entry
x_refsource_VUPEN
33134
vdb-entry
x_refsource_OSVDB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now