6.8
CVSSv2

CVE-2010-4505

Published: 08/12/2010 Updated: 09/12/2010
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in login.php in Injader 2.4.4, when magic_quotes_gpc is disabled, allow remote malicious users to execute arbitrary SQL commands via the (1) un and (2) pw parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

injader injader 2.4.4