SQL injection vulnerability in scrape.php in BtiTracker 1.4.7 and earlier and xBtiTracker 2.0.542 and earlier allows remote attackers to execute arbitrary SQL commands via the info_hash parameter.
View Full Alert
Related Posts
CVE-2008-7321The tubepress plugin before 1.6.5 for WordPress has XSS. View Full Alert
CVE-2008-7273A symlink issue exists in Iceweasel-firegpg before 0.6 due to insecure tempfile handling. View Full Alert
CVE-2008-7314mIRC before 6.35 allows attackers to cause a denial of service (crash) via a long nickname. View Full Alert