CVE-2008-0543

Publication date

2008-02-01 19:41:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in Pre Dynamic Institution allow remote attackers to execute arbitrary SQL commands via the (1) sloginid and (2) spass parameters to (a) login.asp and (b) siteadmin/login.asp. NOTE: some of these details are obtained from third party information.