HIGH
Multiple SQL injection vulnerabilities in PortalXP Teacher Edition 1.2 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) calendar.php, (2) news.php, and (3) links.php; and the (4) assignment_id parameter to assignments.php
Published Sep 10, 2009
7.5
HIGHCVSS 2.0
EPSS 0.95%
Description
Affected products
Remediation
Metrics
References (1)
Change history (0)
No recorded changes yet.