SQL injection vulnerability in adminlogin.asp in XTREME ASP Photo Gallery 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
References
Configurations
History
No history.
Information
Published : 2004-12-31 05:00
Updated : 2018-10-19 15:30
NVD link : CVE-2004-2746
Mitre link : CVE-2004-2746
CVE.ORG link : CVE-2004-2746
JSON object : View
Products Affected
pensacola_web_designs
- xtremeasp_photogallery
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')