PT-2001-2359 · Mysql Server+1 · Mysql Server+1
Published
2001-12-25
·
Updated
2008-09-05
·
CVE-2001-1226
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
AdCycle versions 1.17 and earlier
Description
The issue allows remote attackers to modify SQL queries. These queries are not properly sanitized before being passed to the MySQL database.
Recommendations
For AdCycle versions 1.17 and earlier, update to a version later than 1.17 to resolve the issue. As a temporary workaround, consider implementing proper sanitization of SQL queries to prevent modification by remote attackers.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Adcycle
Mysql Server