header-logo
Suggest Exploit
vendor:
PHPList
by:
Unknown
5.5
CVSS
MEDIUM
Input Validation
Unknown
CWE
Product Name: PHPList
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: Unknown
Metasploit:
Other Scripts:
Platforms Tested: Unknown
Unknown

Multiple input validation vulnerabilities in PHPList

PHPList is prone to multiple input validation vulnerabilities. These issues are due to a failure in the application to properly santize user-supplied input. The application is prone to multiple cross-site scripting, HTTP injection, SQL injection and directory traversal vulnerabilities.

Mitigation:

Unknown
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/15350/info
 
PHPList is prone to multiple input validation vulnerabilities. These issues are due to a failure in the application to properly santize user-supplied input.
 
The application is prone to multiple cross-site scripting, HTTP injection, SQL injection and directory traversal vulnerabilities. 

http://www.example.com/lists/admin/?page=editattributes&id=1'[SQL]