Описание
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-5012
- https://exchange.xforce.ibmcloud.com/vulnerabilities/59390
- http://osvdb.org/65471
- http://packetstormsecurity.org/1006-exploits/dalogin-sqlxssdisclose.txt
- http://secunia.com/advisories/40204
- http://securityreason.com/securityalert/8509
- http://www.exploit-db.com/exploits/13830
- http://www.securityfocus.com/bid/40810
Связанные уязвимости
nvd
почти 15 лет назад
SQL injection vulnerability in new.php in DaLogin 2.2 and 2.2.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.