CVE-2012-1002
08.02.2012, 04:11
SQL injection vulnerability in author/edit.php in OpenConf 4.x before 4.12 allows remote attackers to execute arbitrary SQL commands via the pid parameter.Enginsight
| Vendor | Product | Version |
|---|---|---|
| zakongroup | openconf | 4.00 |
| zakongroup | openconf | 4.01 |
| zakongroup | openconf | 4.02 |
| zakongroup | openconf | 4.10 |
| zakongroup | openconf | 4.11 |
𝑥
= Vulnerable software versions
References