CVE-2010-2339
CVE-2010-2339
SQL injection vulnerability in admin/pages.php in Subdreamer CMS 3.x.x allows remote attackers to execute arbitrary SQL commands via the categoryids[] parameter in an update_pages action.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://packetstormsecurity.org/1006-advisories/major_rls73.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/59441http://www.majorsecurity.net/subdreamer_cms_sql_injection.phphttp://www.securityfocus.com/archive/1/511818http://www.securityfocus.com/bid/40849http://www.vupen.com/english/advisories/2010/1476