CVE-2010-4908 Information

Description

SQL injection vulnerability in detail.php in Virtue Shopping Mall allows remote attackers to execute arbitrary SQL commands via the prodid parameter.

Reference

http://packetstormsecurity.org/0908-exploits/vsm-sql.txt http://secunia.com/advisories/35374 http://securityreason.com/securityalert/8443 http://www.securityfocus.com/bid/43274 https://exchange.xforce.ibmcloud.com/vulnerabilities/61875

Share on: