Beveiligingsadvies

CVE-2010-2012

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2010-05-24 17:00:00
Laatst bijgewerkt 2024-09-16 20:43:35
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

SQL injection vulnerability in function.php in MigasCMS 1.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the categorie parameter in a catalogo action. NOTE: some of these details are obtained from third party information.