Security Advisory

CVE-2009-0332

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-01-29 18:09:00
Last updated 2024-08-07 04:31:25
Assigner mitre
State PUBLISHED

Description

Multiple SQL injection vulnerabilities in AV Book Library before 1.1 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) admin/edit.php, (2) admin/add.php, (3) lib/book_search.php, and possibly other components.