Vulnerabilities > CVE-2007-4437 - Unspecified vulnerability in Ampache
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN ampache
nessus
Summary
SQL injection vulnerability in albums.php in Ampache before 3.3.3.5 allows remote attackers to execute arbitrary SQL commands via the match parameter. NOTE: some details are obtained from third party information.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Gentoo Local Security Checks |
NASL id | GENTOO_GLSA-200710-13.NASL |
description | The remote host is affected by the vulnerability described in GLSA-200710-13 (Ampache: Multiple vulnerabilities) LT discovered that the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 27048 |
published | 2007-10-15 |
reporter | This script is Copyright (C) 2007-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/27048 |
title | GLSA-200710-13 : Ampache: Multiple vulnerabilities |
code |
|
References
- http://bugs.gentoo.org/show_bug.cgi?id=189607
- http://bugs.gentoo.org/show_bug.cgi?id=189607
- http://osvdb.org/38276
- http://osvdb.org/38276
- http://secunia.com/advisories/26542
- http://secunia.com/advisories/26542
- http://secunia.com/advisories/27253
- http://secunia.com/advisories/27253
- http://security.gentoo.org/glsa/glsa-200710-13.xml
- http://security.gentoo.org/glsa/glsa-200710-13.xml
- http://www.ampache.org/announce/3_3_3_5.php
- http://www.ampache.org/announce/3_3_3_5.php
- http://www.securityfocus.com/bid/25362
- http://www.securityfocus.com/bid/25362
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36121
- https://exchange.xforce.ibmcloud.com/vulnerabilities/36121