CVE-2008-2903
30.06.2008, 18:24
SQL injection vulnerability in news.php in Advanced Webhost Billing System (AWBS) 2.3.3 through 2.7.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the viewnews parameter.
Vendor | Product | Version |
---|---|---|
awbs | advanced_webhost_billing_system | 2.3.3 |
awbs | advanced_webhost_billing_system | 2.5 |
awbs | advanced_webhost_billing_system | 2.6.3 |
awbs | advanced_webhost_billing_system | 2.7 |
awbs | advanced_webhost_billing_system | 2.7.1 |
𝑥
= Vulnerable software versions
References