CVE-2009-2147
22.06.2009, 14:30
SQL injection vulnerability in fdown.php in phpWebThings 1.5.2 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Vendor | Product | Version |
---|---|---|
phpwebthings | phpwebthings | 𝑥 ≤ 1.5.2 |
phpwebthings | phpwebthings | 0.1 |
phpwebthings | phpwebthings | 0.2 |
phpwebthings | phpwebthings | 0.2b:b |
phpwebthings | phpwebthings | 0.3 |
phpwebthings | phpwebthings | 0.4 |
phpwebthings | phpwebthings | 0.4.1 |
phpwebthings | phpwebthings | 0.4.2 |
phpwebthings | phpwebthings | 0.6.0 |
phpwebthings | phpwebthings | 1.0 |
phpwebthings | phpwebthings | 1.1a:a |
phpwebthings | phpwebthings | 1.4 |
phpwebthings | phpwebthings | 1.4.4 |
phpwebthings | phpwebthings | 1.5.0 |
phpwebthings | phpwebthings | 1.5.1 |
𝑥
= Vulnerable software versions
References