CVE-2012-1784 Information

Description

SQL injection vulnerability in MyJobList 0.1.3 allows remote attackers to execute arbitrary SQL commands via the eid parameter in a profile action to index.php.

Reference

http://osvdb.org/79637 http://packetstormsecurity.org/files/110225/MyJobList-0.1.3-SQL-Injection.html http://secunia.com/advisories/48169 http://www.securityfocus.com/bid/52168 https://exchange.xforce.ibmcloud.com/vulnerabilities/73503

Share on: