CVE-2009-3209 Information

Description

SQL injection vulnerability in remove.php in PHP eMail Manager 3.3.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter.

Reference

http://osvdb.org/57171 http://packetstormsecurity.org/0908-exploits/phpem-sql.txt http://secunia.com/advisories/36346 https://exchange.xforce.ibmcloud.com/vulnerabilities/52548

Share on: