SQL injection vulnerability in engine/users/users_edit_pub.inc in CMS Ortus 1.13 and earlier allows remote authenticated users to execute arbitrary SQL commands via the city parameter in a users_edit_pub action to index.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-02-25T23:00:00

Updated: 2024-08-07T11:27:35.409Z

Reserved: 2009-02-25T00:00:00

Link: CVE-2008-6282

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-02-25T23:30:00.767

Modified: 2024-11-21T00:56:08.200

Link: CVE-2008-6282

cve-icon Redhat

No data.