Multiple SQL injection vulnerabilities in LiSK CMS 4.4 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in a view_inbox action to cp/cp_messages.php or (2) the id parameter to cp/edit_email.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-16T18:13:46.574Z

Reserved: 2010-05-24T00:00:00Z

Link: CVE-2010-2015

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2010-05-24T17:30:01.833

Modified: 2024-11-21T01:15:42.827

Link: CVE-2010-2015

cve-icon Redhat

No data.