CVE Database
/

CVE-2009-3505

Back to search

CVE-2009-3505

Published: Sep 30, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

SQL injection vulnerability in view_news.php in Vastal I-Tech MMORPG Zone allows remote attackers to execute arbitrary SQL commands via the news_id parameter. NOTE: the game_id vector is already covered by CVE-2008-4460.

VendorProductVersions

n/a

n/a

affected
n/a

References

36483
vdb-entry
x_refsource_BID
ADV-2009-2734
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now