Security Advisory

CVE-2004-2042

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2005-05-10 04:00:00
Last updated 2024-08-08 01:15:01
Assigner mitre
State PUBLISHED

Description

Multiple SQL injection vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary SQL code and gain sensitive information via (1) content parameter to content.php, (2) content_id parameter to content.php, or (3) list parameter to news.php.