CVE

Id
13362  
CVE No.
CVE-2005-2156  
Status
Candidate  
Description
SQL injection vulnerability in news.php in PHPNews 1.2.5 allows remote attackers to execute arbitrary SQL commands via the prevnext parameter.  
Phase
Assigned (20050706)  
Votes
None (candidate not yet proposed)  
Comments