Описание
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action.
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2010-4915
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61638
- http://packetstormsecurity.org/1009-exploits/coldbookmarks-sql.txt
- http://secunia.com/advisories/41334
- http://securityreason.com/securityalert/8449
- http://www.exploit-db.com/exploits/14933
- http://www.securityfocus.com/bid/43035
Связанные уязвимости
nvd
больше 14 лет назад
SQL injection vulnerability in index.cfm in ColdGen ColdBookmarks 1.22 allows remote attackers to execute arbitrary SQL commands via the BookmarkID parameter in an EditBookmark action.