Описание
SQL injection vulnerability in asearch.php in webSPELL 4.2.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
SQL injection vulnerability in asearch.php in webSPELL 4.2.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-4861
- https://exchange.xforce.ibmcloud.com/vulnerabilities/62130
- http://packetstormsecurity.org/1009-exploits/webspell421-sql.txt
- http://securityreason.com/securityalert/8419
- http://www.exploit-db.com/exploits/15151
- http://www.securityfocus.com/bid/43579
- http://www.webspell.org/index.php?site=files&cat=21
Связанные уязвимости
nvd
больше 14 лет назад
SQL injection vulnerability in asearch.php in webSPELL 4.2.1 allows remote attackers to execute arbitrary SQL commands via the search parameter.