CVE-2010-0611
11.02.2010, 17:30
Multiple SQL injection vulnerabilities in adminlogin.php in Baal Systems 3.8 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
Vendor | Product | Version |
---|---|---|
baalsystems | baal_systems | 𝑥 ≤ 3.8 |
baalsystems | baal_systems | 3.6 |
baalsystems | baal_systems | 3.7 |
𝑥
= Vulnerable software versions
References