CVE-2014-5440
12.09.2014, 14:55
SQL injection vulnerability in Login.aspx in MPEX Business Solutions MX-SmartTimer before 13.19.18 allows remote attackers to execute arbitrary SQL commands via the ct100%24CPHContent%24password parameter.
Vendor | Product | Version |
---|---|---|
mpexsolutions | mx-smartimer | 𝑥 ≤ 13.18.5.11 |
𝑥
= Vulnerable software versions
References