Back to search
CVE-2007-2492
Published: May 4, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
SQL injection vulnerability in index.php in the v4bJournal module for PostNuke allows remote authenticated users to execute arbitrary SQL commands via the id parameter in a journal_comment action.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
2674
third-party-advisory
x_refsource_SREASON
23777
vdb-entry
x_refsource_BID
3835
exploit
x_refsource_EXPLOIT-DB
pnjournal-index-sql-injection(34024)
vdb-entry
x_refsource_XF
20070502 Post Nuke v4bJournal Module Sql Inject
mailing-list
x_refsource_BUGTRAQ
35703
vdb-entry
x_refsource_OSVDB
ADV-2007-1632
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now