Vulnonym.org

CVE-2005-1134 - Pococurante Transmittals

Description

SQL injection vulnerability in exit.php for Serendipity 0.8 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) url_id or (2) entry_id parameters.

Reference

http://seclists.org/lists/bugtraq/2005/Apr/0195.html http://www.s9y.org/5.html http://www.securityfocus.com/bid/13161 http://www.s9y.org/63.html#A9 http://www.osvdb.org/15542 http://securitytracker.com/id?1013699 http://secunia.com/advisories/15145 https://exchange.xforce.ibmcloud.com/vulnerabilities/20119 serendipity-urlid-entryid-sql-injection(20119) SQL injection vulnerability in exit.php for Serendipity 0.8 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) url_id or (2) entry_id parameters.