CVE-2013-6985 Information

Description

SQL injection vulnerability in m_worklog/log_searchday.jsp in Enorth Webpublisher CMS possibly 5.0 and earlier allows remote attackers to execute arbitrary SQL commands via the thisday parameter.

Reference

http://seclists.org/fulldisclosure/2013/Dec/35 http://www.securityfocus.com/bid/64110

Share on: