TROYANOSYVIRUS
Retour aux CVEs

CVE-2011-3838

N/A

Description

Multiple SQL injection vulnerabilities in Wuzly 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) u parameter to fp.php, (2) epage parameter to newpage.php, (3) epost parameter to newpost.php, and (4) username parameter to login.php in admin/; or the (5) username parameter to mobile/login.php.

Details CVE

Score CVSS v3.1N/A
Publie12/24/2011
Derniere modification4/11/2025
Sourcenvd
Observations honeypot0

Produits affectes

wuzly:wuzly

Faiblesses (CWE)

CWE-89

References

http://osvdb.org/77915(PSIRT-CNA@flexerasoftware.com)
http://osvdb.org/77916(PSIRT-CNA@flexerasoftware.com)
http://osvdb.org/77917(PSIRT-CNA@flexerasoftware.com)
http://osvdb.org/77918(PSIRT-CNA@flexerasoftware.com)
http://osvdb.org/77919(PSIRT-CNA@flexerasoftware.com)
http://secunia.com/advisories/46163(PSIRT-CNA@flexerasoftware.com)
http://secunia.com/secunia_research/2011-88/(PSIRT-CNA@flexerasoftware.com)
http://osvdb.org/77915(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/77916(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/77917(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/77918(af854a3a-2127-422b-91ae-364da2661108)
http://osvdb.org/77919(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/46163(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/secunia_research/2011-88/(af854a3a-2127-422b-91ae-364da2661108)

Correlations IOC

Aucune correlation enregistree

This product uses data from the NVD API but is not endorsed or certified by the NVD.