New posible SQL injection in 4.10 last version coppermine .... New posible SQL injection in 4.10 last version coppermine ....
 

News:

CPG Release 1.6.26
Correct PHP8.2 issues with user and language managers.
Additional fixes for PHP 8.2
Correct PHP8 error with SMF 2.0 bridge.
Correct IPTC supplimental category parsing.
Download and info HERE

Main Menu

New posible SQL injection in 4.10 last version coppermine ....

Started by tuxsoul, January 06, 2007, 01:33:07 AM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

tuxsoul

Hi, checkin in de bugtracks system, i see this exploid to use in coppermine gallery, can the developers check this exploid please ?

http://www.securityfocus.com/archive/1/456051/30/0/threaded

greetings sorry my english is bad  :P
¿do you like my comment?, gift me one bitcoin: 1266FWznbEW1uLNPsLU9ATBxGuM1U19thB
bitcoin pay forward project: 15pjRCNT2CpzVo7HQ6b6r4q18Vv4Da7y9K

Nibbler

The SQL vulnerability can only be exploited by those who already have an admin account. It poses little danger.

Tarique Sani

+1 to what Nibbler said, no immediate threat but will be fixed in future versions
SANIsoft PHP applications for E Biz