CVE Vulnerabilities

CVE-2004-2042

Published: May 29, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Multiple SQL injection vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary SQL code and gain sensitive information via (1) content parameter to content.php, (2) content_id parameter to content.php, or (3) list parameter to news.php.

Affected Software

Name Vendor Start Version End Version
E107 E107 0.615 (including) 0.615 (including)
E107 E107 0.615a (including) 0.615a (including)

References