HIGH
Multiple SQL injection vulnerabilities in index.php in DMANews 0.904 and 0.910 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a comments action and the (2) sortorder and (3) display_num parameters in a news_list action
Published Dec 1, 2005
7.5
HIGHCVSS 2.0
EPSS 1.16%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.