Security Advisory

CVE-2010-4897

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2011-10-08 10:00:00
Last updated 2024-09-16 18:29:56
Assigner mitre
State PUBLISHED

Description

SQL injection vulnerability in comment.php in BlueCMS 1.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For HTTP header in a send action.