Vulnerabilities > CVE-2004-1430 - Unspecified vulnerability in Ipbproarcade 2.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN ipbproarcade
nessus
Summary
SQL injection vulnerability in the show_stats module in Arcade.php in IbProArcade allows remote attackers to execute arbitrary SQL code via the gameid parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | CGI abuses |
NASL id | IBPROARCADE_SQL_INJECTION.NASL |
description | The remote host is running ibProArcade, a web-based score board system written in PHP. One of the application |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 16086 |
published | 2005-01-02 |
reporter | This script is Copyright (C) 2005-2018 Ami Chayun |
source | https://www.tenable.com/plugins/nessus/16086 |
title | IBProArcade index.php Arcade Module gameid Parameter SQL Injection |
code |
|
References
- http://marc.info/?l=bugtraq&m=110451448630711&w=2
- http://marc.info/?l=bugtraq&m=110451448630711&w=2
- http://secunia.com/advisories/13260
- http://secunia.com/advisories/13260
- http://www.securityfocus.com/bid/12138
- http://www.securityfocus.com/bid/12138
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18720
- https://exchange.xforce.ibmcloud.com/vulnerabilities/18720