CVE-2009-2921
CVE-2009-2921
Multiple SQL injection vulnerabilities in login.php in MOC Designs PHP News 1.1 allow remote attackers to execute arbitrary SQL commands via the (1) newsuser parameter (User field) and (2) newspassword parameter (Password field).
Affected products
n/a · n/apublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/9353unverifiedexploitdbwww.exploit-db.com/exploits/9353unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →