CVE-2008-0428
23.01.2008, 22:00
Multiple SQL injection vulnerabilities in the login function in system/class_permissions.php in bloofoxCMS 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to admin/index.php.
SQL Injection
Vendor | Product | Version |
---|---|---|
bloofoxcms | bloofoxcms | 0.3 |
𝑥
= Vulnerable software versions
References