Multiple SQL injection vulnerabilities in Betster (aka PHP Betoffice) 1.0.4 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) showprofile.php or (2) categoryedit.php or (3) username parameter in a login to index.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2015-03-12T17:00:00

Updated: 2024-08-06T05:10:15.543Z

Reserved: 2015-03-08T00:00:00

Link: CVE-2015-2237

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-03-12T17:59:00.077

Modified: 2024-11-21T02:27:02.997

Link: CVE-2015-2237

cve-icon Redhat

No data.