CVE-2010-0611
11.02.2010, 17:30
Multiple SQL injection vulnerabilities in adminlogin.php in Baal Systems 3.8 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
SQL Injection
Vendor | Product | Version |
---|---|---|
baalsystems | baal_systems | 𝑥 ≤ 3.8 |
baalsystems | baal_systems | 3.6 |
baalsystems | baal_systems | 3.7 |
𝑥
= Vulnerable software versions
References