CVE-2010-3467
17.09.2010, 20:00
SQL injection vulnerability in modules/sections/index.php in E-Xoopport Samsara 3.1 and earlier, when the Tutorial module is enabled, allows remote attackers to execute arbitrary SQL commands via the secid parameter in a listarticles action.
| Vendor | Product | Version |
|---|---|---|
| e-xoopport | samsara | 𝑥 ≤ 3.1 |
| e-xoopport | samsara | 3.0 |
𝑥
= Vulnerable software versions
References