CVE-2017-7410
03.04.2017, 22:59
Multiple SQL injection vulnerabilities in account/signup.php and account/signup2.php in WebsiteBaker 2.10.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) username, (2) display_name parameter.
Vendor | Product | Version |
---|---|---|
websitebaker | websitebaker | 𝑥 ≤ 2.10.0 |
𝑥
= Vulnerable software versions
References