Описание
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-5012
- https://exchange.xforce.ibmcloud.com/vulnerabilities/59390
- http://osvdb.org/65471
- http://packetstormsecurity.org/1006-exploits/dalogin-sqlxssdisclose.txt
- http://secunia.com/advisories/40204
- http://securityreason.com/securityalert/8509
- http://www.exploit-db.com/exploits/13830
- http://www.securityfocus.com/bid/40810
Связанные уязвимости
nvd
больше 14 лет назад
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.