CVE-2009-3212 Information

Description

SQL injection vulnerability in VivaPrograms Infinity Script 2.x.x when magic_quotes_gpc is disabled allows remote attackers to execute arbitrary SQL commands via the username field.

Reference

http://packetstormsecurity.org/0908-exploits/infinity-disclose.txt https://exchange.xforce.ibmcloud.com/vulnerabilities/52559

Share on: