Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Chernobile

Pesquisador deCyber Sabotage and Defacer (CSDT) TEAM
#18029de 53,630
15CVSS total
Vulnerabilidades · 2
Alta
2
PT-2007-1776
7.5
2007-01-18
Mint · Mint Haber Sistemi · CVE-2007-0304
Name of the Vulnerable Software and Affected Versions: MiNT Haber Sistemi version 2.7 Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id` parameter in the "duyuru.asp" file. Recommendations: For MiNT Haber Sistemi version 2.7, consider restricting access to the `id` parameter in the "duyuru.asp" file to minimize the risk of exploitation. As a temporary workaround, avoid using the `id` parameter in the affected file until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2007-1545
7.5
2007-01-04
Vizayn · Vizayn Haber · CVE-2007-0052
**Name of the Vulnerable Software and Affected Versions** Vizayn Haber (affected versions not specified) **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id` parameter in the "haberdetay.asp" file. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.