CVE-2013-2690

Publication date

2013-03-28 23:00:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in index.php in Synchroweb Technology SynConnect 2.0 allows remote attackers to execute arbitrary SQL commands via the loginid parameter in a logoff action.