CVE-2012-1002

Publication date

2012-02-08 02:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in author/edit.php in OpenConf 4.x before 4.12 allows remote attackers to execute arbitrary SQL commands via the pid parameter.