CVE-2009-3758
EUVD-2009-373022.10.2009, 17:30
SQL injection vulnerability in login.php in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: some of these details are obtained from third party information.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| citrix | xencenterweb | * |
𝑥
= Vulnerable software versions
References