Skip to content

Latest commit

 

History

History
17 lines (11 loc) · 763 Bytes

CVE-2008-1895.md

File metadata and controls

17 lines (11 loc) · 763 Bytes

Description

Multiple SQL injection vulnerabilities in Carbon Communities 2.4 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter to events.asp, the (2) UserName parameter to getpassword.asp, and possibly an unspecified parameter to (3) option_Update.asp in an edit action.

POC

Reference

Github

No PoCs found on GitHub currently.