CVE-2010-1359
13.04.2010, 18:30
SQL injection vulnerability in bluegate_seo.inc.php in the Direct URL module for xt:Commerce, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the coID parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Vendor | Product | Version |
---|---|---|
bluegate | direct_url | * |
xt-commerce | xt-commerce | 3.0.4 |
𝑥
= Vulnerable software versions