LWN.net Logo

zoph: missing input sanitizing

Package(s):zoph CVE #(s):CVE-2007-3905
Created:October 19, 2007 Updated:October 25, 2007
Description: It was discovered that zoph, a web based photo management system, performs insufficient input sanitizing, which allows SQL injection.
Alerts:
Debian DSA-1389-2 2007-10-24
Debian DSA-1389-1 2007-10-18

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds