CVE Database
/

CVE-2007-1607

Back to search

CVE-2007-1607

Published: Mar 22, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

search.php in w-Agora (Web-Agora) allows remote attackers to obtain potentially sensitive information via a ' (quote) value followed by certain SQL sequences in the (1) search_forum or (2) search_user parameter, which force a SQL error.

VendorProductVersions

n/a

n/a

affected
n/a

References

wagora-search-sql-injection(33177)
vdb-entry
x_refsource_XF
2462
third-party-advisory
x_refsource_SREASON
24605
third-party-advisory
x_refsource_SECUNIA
23057
vdb-entry
x_refsource_BID
34376
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now