Multiple SQL injection vulnerabilities in login.php in Injader 2.4.4, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) un and (2) pw parameters.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2010-12-08T19:00:00Z

Updated: 2024-09-17T00:30:35.822Z

Reserved: 2010-12-08T00:00:00Z

Link: CVE-2010-4505

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-12-08T20:00:04.727

Modified: 2024-11-21T01:21:06.020

Link: CVE-2010-4505

cve-icon Redhat

No data.