Описание
SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik action.
SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik action.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-0964
- https://exchange.xforce.ibmcloud.com/vulnerabilities/56851
- http://4004securityproject.wordpress.com/2010/03/11/eros-erotik-webkatalog-start-php-rubrikidsql-injection
- http://osvdb.org/62902
- http://packetstormsecurity.org/1003-exploits/eroserotikwebkat-sql.txt
- http://secunia.com/advisories/38900
- http://www.exploit-db.com/exploits/11689
Связанные уязвимости
nvd
почти 16 лет назад
SQL injection vulnerability in start.php in Eros Webkatalog allows remote attackers to execute arbitrary SQL commands via the id parameter in a rubrik action.