CVE-2010-3467
17.09.2010, 20:00
SQL injection vulnerability in modules/sections/index.php in E-Xoopport Samsara 3.1 and earlier, when the Tutorial module is enabled, allows remote attackers to execute arbitrary SQL commands via the secid parameter in a listarticles action.
Vendor | Product | Version |
---|---|---|
e-xoopport | samsara | 𝑥 ≤ 3.1 |
e-xoopport | samsara | 3.0 |
𝑥
= Vulnerable software versions
References