CVE-2008-6142

Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPic 0.0.4 and FlexPHPic Pro 0.0.3, and other 0.0.x versions, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php.
Configurations

Configuration 1

cpe:2.3:a:china-on-site:flexphpic:0.0.4:*:*:*:*:*:*:*
cpe:2.3:a:china-on-site:flexphpic:0.0.3:-:pro:*:*:*:*:*

Information

Published : 2009-02-16 05:30

Updated : 2017-09-29 01:32


NVD link : CVE-2008-6142

Mitre link : CVE-2008-6142

Products Affected
No products.
CWE