CVE-2009-0332 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in AV Book Library before 1.1 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) admin/edit.php (2) admin/add.php (3) lib/book_search.php and possibly other components.
Reference
http://secunia.com/advisories/33583 http://sourceforge.net/project/shownotes.php?release_id=654214 http://sourceforge.net/tracker/index.php?func=detail&aid=2219743&group_id=209711&atid=1010816 https://exchange.xforce.ibmcloud.com/vulnerabilities/48084
Share on: