CVE-2014-10023

Publication date

2015-01-13 11:00:00

Family

mitre

State

PUBLISHED

Description

Multiple SQL injection vulnerabilities in TopicsViewer 3.0 Beta 1 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) edit_block.php, (2) edit_cat.php, (3) edit_note.php, or (4) rmv_topic.php in admincp/.