First published: Fri Dec 31 2004(Updated: )
SQL injection vulnerability in the members_list module in PostNuke 0.726, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the sortby parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Postnuke Software Foundation Postnuke | =0.726 | |
Postnuke Software Foundation Postnuke | =0.722 | |
Postnuke Software Foundation Postnuke | =0.723 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.