CVE-2014-2540
11.04.2014, 14:55
SQL injection vulnerability in OrbitScripts Orbit Open Ad Server before 1.1.1 allows remote attackers to execute arbitrary SQL commands via the site_directory_sort_field parameter to guest/site_directory.
Vendor | Product | Version |
---|---|---|
orbitscripts | orbit_open_ad_server | 𝑥 ≤ 1.1.0 |
𝑥
= Vulnerable software versions
References