HIGH
Multiple SQL injection vulnerabilities in SuperNET Shop 1.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to secure/admin/guncelle.asp, (2) kulad and sifre parameters to secure/admin/giris.asp, and (3) username and password to secure/admin/default.asp
Published Feb 20, 2009
7.5
HIGHCVSS 2.0
EPSS 0.97%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.