CVE-2010-0611
11.02.2010, 17:30
Multiple SQL injection vulnerabilities in adminlogin.php in Baal Systems 3.8 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
| Vendor | Product | Version | 
|---|---|---|
| baalsystems | baal_systems | 𝑥 ≤ 3.8  | 
| baalsystems | baal_systems | 3.6  | 
| baalsystems | baal_systems | 3.7  | 
𝑥
= Vulnerable software versions
References