CVE-2010-0723 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in news.php in Ero Auktion 2.0 and 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Reference
http://4004securityproject.wordpress.com/2010/02/21/ero-auktion-2010-sql-injection-news-php/ http://4004securityproject.wordpress.com/2010/02/21/ero-auktion-v-2-0-sql-injection-news-php/ http://packetstormsecurity.org/1002-exploits/eroauktion2010-sql.txt http://packetstormsecurity.org/1002-exploits/eroauktion20-sql.txt http://secunia.com/advisories/38666 http://www.exploit-db.com/exploits/11521 http://www.exploit-db.com/exploits/11522 https://exchange.xforce.ibmcloud.com/vulnerabilities/56446
Share on: