Security Advisory

CVE-2007-6058

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-11-20 20:00:00
Last updated 2024-08-07 15:54:26
Assigner mitre
State PUBLISHED

Description

Multiple SQL injection vulnerabilities in index.php in ProfileCMS 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the id parameter in a (1) codes action in the profile-codes module, (2) videos action in the video-codes module, or (3) games action in the arcade-games module.