CVE-2009-1026 Information

Description

Multiple SQL injection vulnerabilities in login.php in Kim Websites 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.

Reference

http://www.securityfocus.com/bid/34116 http://www.vupen.com/english/advisories/2009/0732 https://exchange.xforce.ibmcloud.com/vulnerabilities/49259 https://www.exploit-db.com/exploits/8209

Share on: