CVE-2009-2591

Publication date

2009-07-24 16:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in the MyAnnonces module for E-Xoopport 3.1 allows remote attackers to execute arbitrary SQL commands via the lid parameter in a viewannonces action to index.php.