CVE-2012-6626 Information

Description

SQL injection vulnerability in verify-user.php in b2ePMS 1.0 allows remote attackers to execute arbitrary SQL commands via the username field.

Reference

http://archives.neohapsis.com/archives/bugtraq/2012-05/0065.html http://www.exploit-db.com/exploits/18882 http://www.securityfocus.com/bid/53505 https://exchange.xforce.ibmcloud.com/vulnerabilities/75568 https://exchange.xforce.ibmcloud.com/vulnerabilities/75569

Share on: