CVE-2008-5652 Information

Description

SQL injection vulnerability in the loginADP function in ajaxp.php in MyioSoft EasyBookMarker 4.0 allows remote attackers to execute arbitrary SQL commands via the rsargs parameter as reachable through the username parameter. NOTE: some of these details are obtained from third party information.

Reference

http://osvdb.org/49701 http://secunia.com/advisories/32673 http://securityreason.com/securityalert/4770 http://www.securityfocus.com/bid/32199 http://www.vupen.com/english/advisories/2008/3075 https://exchange.xforce.ibmcloud.com/vulnerabilities/46447 https://www.exploit-db.com/exploits/7045

Share on: