vendor:
Graugon PHP Article Publisher
by:
x0r
7.5
CVSS
HIGH
Multiple Sql Injections / Insecure Cookie Handling
89, 614
CWE
Product Name: Graugon PHP Article Publisher
Affected Version From: 1
Affected Version To: 1
Patch Exists: NO
Related CWE: N/A
CPE: a:graugon:graugon_php_article_publisher
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2009
Graugon PHP Article Publisher 1.0
The Graugon PHP Article Publisher 1.0 is vulnerable to multiple SQL injections and insecure cookie handling. An attacker can exploit these vulnerabilities to gain access to sensitive information such as user credentials and other details stored in the database.
Mitigation:
Ensure that user input is properly sanitized and validated before being used in SQL queries. Also, ensure that cookies are properly secured.