CVE-2010-4185 Information

Description

SQL injection vulnerability in index.php in Energine possibly 2.3.8 and earlier allows remote attackers to execute arbitrary SQL commands via the NRGNSID cookie.

Reference

http://secunia.com/advisories/41973 http://www.exploit-db.com/exploits/15327 http://www.securityfocus.com/archive/1/514494/100/0/threaded

Share on: