PublicDate: 2007-03-07 21:19:00 UTC Candidate: CVE-2007-1326 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1326 Description: SQL injection vulnerability in index.php in Serendipity 1.1.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[multiCat][] parameter. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_serendipity: DNE edgy_serendipity: DNE feisty_serendipity: needed (reached end-of-life) gutsy_serendipity: released (1.1.4-1) hardy_serendipity: released (1.1.4-1) devel_serendipity: released (1.1.4-1) upstream_serendipity: needs-triage