CVE-2014-9348 Information

Description

SQL injection vulnerability in the formulaireRobot function in admin/robots.lib.php in RobotStats 1.0 allows remote attackers to execute arbitrary SQL commands via the robot parameter to admin/robots.php.

Reference

http://packetstormsecurity.com/files/129229/RobotStats-1.0-SQL-Injection.html http://www.exploit-db.com/exploits/35344 https://exchange.xforce.ibmcloud.com/vulnerabilities/98951

Share on: