CVE-2008-6678

Publication date

2009-04-08 10:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in asp/includes/contact.asp in QuickerSite 1.8.5 allows remote attackers to execute arbitrary SQL commands via the sNickName parameter in a profile action to default.asp.