CVE-2009-1658 Information

Description

Multiple SQL injection vulnerabilities in admin/admin.php in Realty Webware Technologies Realty Web-Base 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) user (username) and (2) password parameters. NOTE: some of these details are obtained from third party information.

Reference

http://osvdb.org/54372 http://secunia.com/advisories/35033 http://www.securityfocus.com/bid/34886 https://exchange.xforce.ibmcloud.com/vulnerabilities/50399 https://www.exploit-db.com/exploits/8643

Share on: