CVE-2012-5317
08.10.2012, 17:55
SQL injection vulnerability in main_bigware_43.php in Bigware Shop before 2.1.5 allows remote attackers to execute arbitrary SQL commands via the lastname parameter in a process action.
Vendor | Product | Version |
---|---|---|
bigware | bigware_shop | 𝑥 ≤ 2.1.4 |
bigware | bigware_shop | 2.0 |
𝑥
= Vulnerable software versions
References