CVE-2009-5090

Publication date

2011-09-09 23:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in editcomments.php in Bloggeruniverse Beta 2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter and possibly other unspecified vectors.