CVE Vulnerabilities

CVE-2004-0239

Published: Nov 23, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in showphoto.php in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain unauthorized access via the photo variable.

Affected Software

NameVendorStart VersionEnd Version
Photopost_php_proPhotopost3.1 (including)3.1 (including)
Photopost_php_proPhotopost3.2 (including)3.2 (including)
Photopost_php_proPhotopost3.3 (including)3.3 (including)
Photopost_php_proPhotopost4.0 (including)4.0 (including)
Photopost_php_proPhotopost4.1 (including)4.1 (including)
Photopost_php_proPhotopost4.6 (including)4.6 (including)

References