Multiple XSS and SQL Injection in Links Manager

Summary for Multiple XSS and SQL Injection in Links Manager

Vulnerability
Multiple XSS and SQL Injection in Links Manager
Discovered
2006.08.21
Last Update
2006.08.31 Exploitation code published
ID
EV0136
CVE
CVE-2006-4327 CVE-2006-4328
Risk Level
medium
Type
Multiple Vulnerabilities
Status
Unpatched. No reply from developer(s)
Vendor
CloudNine Interactive
Vulnerable Software
Links Manager
Version
2006-06-12
PoC/Exploit
Available
Solution
Not available
Discovered by
Aliaksandr Hartsuyeu (eVuln.com)

Order Source Code Audit

Prevent hacker attacks by source code review of your site made by Aliaksandr Hartsuyeu.The work will be done by experts in web security.