1 results (0.002 seconds)

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 4

Multiple SQL injection vulnerabilities in WSN Knowledge Base 1.2.0 and earler allow remote attackers to execute arbitrary SQL commands via the (1) catid, (2) perpage, (3) ascdesc, and (4) orderlinks in a displaycat action in (a) index.php; and the (5) id parameter in (b) comments.php and (c) memberlist.php. • https://www.exploit-db.com/exploits/26680 https://www.exploit-db.com/exploits/26679 https://www.exploit-db.com/exploits/26681 http://pridels0.blogspot.com/2005/11/wsn-knowledge-base-sql-inj-vuln.html http://secunia.com/advisories/17810 http://www.osvdb.org/21262 http://www.osvdb.org/21263 http://www.osvdb.org/21264 http://www.securityfocus.com/bid/15656 •