CVE-2009-1913
04.06.2009, 16:30
SQL injection vulnerability in manager.php in LuxBum 0.5.5, when magic_quotes_gpc is disabled and dotclear authentication is used, allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
Vendor | Product | Version |
---|---|---|
luxbum | luxbum | 0.5.5 |
𝑥
= Vulnerable software versions
References