CVE-2011-5229 Information

Description

SQL injection vulnerability in quickstart/profile/index.php in the Forum module in appRain CMF 0.1.5 allows remote attackers to execute arbitrary SQL commands via the PATH_INFO.

Reference

http://www.exploit-db.com/exploits/18249 http://www.securityfocus.com/bid/51105 http://www.vulnerability-lab.com/get_content.php?id=362 https://exchange.xforce.ibmcloud.com/vulnerabilities/71880

Share on: