CVE-2009-1764

Publication date

2009-05-22 18:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in inc/ajax.asp in MaxCMS 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a digg action.