CVE-2010-1078
23.03.2010, 19:30
SQL injection vulnerability in archive.php in XlentProjects SphereCMS 1.1 alpha allows remote attackers to execute arbitrary SQL commands via encoded null bytes ("%00") in the view parameter, which bypasses a protection mechanism.
Vendor | Product | Version |
---|---|---|
sphere.xlentprojects | spherecms | 1.1:alpha |
𝑥
= Vulnerable software versions
References