Security Advisory

CVE-2013-2627

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2013-12-21 00:00:00
Last updated 2024-08-06 15:44:32
Assigner mitre
State PUBLISHED

Description

SQL injection vulnerability in action.php in Leed (Light Feed), possibly before 1.5 Stable, allows remote attackers to execute arbitrary SQL commands via the id parameter in a removeFolder action.