CVE-2008-6204 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in SuperNET Shop 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to secure/admin/guncelle.asp (2) kulad and sifre parameters to secure/admin/giris.asp and (3) username and password to secure/admin/default.asp.
Reference
http://www.securityfocus.com/bid/28709 http://www.vupen.com/english/advisories/2008/1161/references https://exchange.xforce.ibmcloud.com/vulnerabilities/41727 https://www.exploit-db.com/exploits/5409
Share on: