SQL injection vulnerability in news.php for Utopia News Pro (UNP) 1.1.3, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote malicious users to execute arbitrary SQL via the newsid parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|