First published: Thu Apr 13 2006(Updated: )
Multiple SQL injection vulnerabilities in Papoo 2.1.5, and 3 beta1 and earlier, allow remote attackers to execute arbitrary SQL commands via the (1) getlang and (2) reporeid parameter in (a) index.php, (3) menuid parameter in (b) plugin.php and (c) forumthread.php, and (4) msgid parameter in forumthread.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Papoo Papoo | =2.1.2 | |
Papoo Papoo | =2.1.4 | |
Papoo Papoo | <=3_beta1 | |
Papoo Papoo | =2.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.