Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Unkn0Wnx

Researcher fromD4real_TeaM
#37734of 53,635
7.5Total CVSS
Vulnerabilities · 1
PT-2007-6034
7.5
2007-09-17
Php · Php Webquest · CVE-2007-4920
Name of the Vulnerable Software and Affected Versions: PHP Webquest versions 2.5 and earlier Description: The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `id actividad` parameter in the soporte derecha w.php file. Recommendations: For PHP Webquest versions 2.5 and earlier, update to a version later than 2.5 to resolve the issue. As a temporary workaround, consider restricting access to the `id actividad` parameter in the soporte derecha w.php file to minimize the risk of exploitation.