SQL injection vulnerability in DotNetNuke (formerly IBuySpy Workshop) 1.0.6 through 1.0.10d allows remote attackers to modify the backend database via the (1) table and (2) field parameters in LinkClick.aspx.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2005-08-16T04:00:00.000Z
Updated: 2024-08-08T01:22:13.675Z
Reserved: 2005-08-16T00:00:00.000Z
Link: CVE-2004-2324
No data.
Status : Modified
Published: 2004-12-31T05:00:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2004-2324
No data.