Required CVE Record Information
Description
Multiple SQL injection vulnerabilities in TaskDriver 1.2 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the username parameter to login.php or (2) the taskid parameter to notes.php.
References 7 Total
- vupen.com: ADV-2007-1768 vdb-entry
- secunia.com: 25221 third-party-advisory
- osvdb.org: 35973 vdb-entry
- exploit-db.com: 3896 exploit
- osvdb.org: 35972 vdb-entry
- exchange.xforce.ibmcloud.com: taskdriver-login-notes-sql-injection(34249) vdb-entry
- securityfocus.com: 23919 vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 7 Total
- vupen.com: ADV-2007-1768 vdb-entryx_transferred
- secunia.com: 25221 third-party-advisoryx_transferred
- osvdb.org: 35973 vdb-entryx_transferred
- exploit-db.com: 3896 exploitx_transferred
- osvdb.org: 35972 vdb-entryx_transferred
- exchange.xforce.ibmcloud.com: taskdriver-login-notes-sql-injection(34249) vdb-entryx_transferred
- securityfocus.com: 23919 vdb-entryx_transferred