CVE-2013-5354 Information

Description

Multiple SQL injection vulnerabilities in Sharetronix 3.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) fb_user_id or (2) tw_user_id parameter to signup.

Reference

http://osvdb.org/100603 http://secunia.com/advisories/53936 http://secunia.com/secunia_research/2013-10 http://www.securityfocus.com/bid/64102

Share on: