Description
SQL injection vulnerability in picture_category.php in Diesel Joke Site allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2006-3763.
Exploits
64882008-09-18webappsPHP
Diesel Joke Site - 'picture_category.php' SQL Injection
By SarBoT511
References
cve@mitre.org
http://securityreason.com/securityalert/4296cve@mitre.org
http://www.securityfocus.com/bid/31240cve@mitre.org
https://www.exploit-db.com/exploits/6488af854a3a-2127-422b-91ae-364da2661108
http://securityreason.com/securityalert/4296af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/31240af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/45217af854a3a-2127-422b-91ae-364da2661108
https://www.exploit-db.com/exploits/6488