CVE-2010-5008

Publication date

2011-11-02 21:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in pages/contact_list_mail_form.asp in BrightSuite Groupware 5.4 allows remote attackers to execute arbitrary SQL commands via the ContactID parameter.