CVE-2009-3259 Information
Feb 14, 2021
cve
Description
Multiple SQL injection vulnerabilities in RASH Quote Management System (RQMS) 1.2.2 allow remote attackers to execute arbitrary SQL commands via (1) the search parameter in a search action (2) the quote parameter in a quote addition or (3) a User_Name cookie in unspecified administrative actions. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Reference
http://osvdb.org/57467 http://osvdb.org/57469 http://osvdb.org/57470 http://secunia.com/advisories/36477 https://exchange.xforce.ibmcloud.com/vulnerabilities/52895
Share on: