mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-27 10:22:48 +02:00
18 lines
713 B
Markdown
18 lines
713 B
Markdown
### [CVE-2008-2340](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2340)
|
|

|
|

|
|

|
|
|
|
### Description
|
|
|
|
Multiple SQL injection vulnerabilities in News Manager 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) lang parameter to (a) advsearch.php, (b) archive.php, and (c) index.php, and the (2) pid parameter to (d) list_tagitems.php.
|
|
|
|
### POC
|
|
|
|
#### Reference
|
|
- https://www.exploit-db.com/exploits/5624
|
|
|
|
#### Github
|
|
No PoCs found on GitHub currently.
|
|
|