CVE-2012-3881

Multiple SQL injection vulnerabilities in RTG 0.7.4 and RTG2 0.9.2 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) 95.php, (2) view.php, or (3) rtg.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:adrian_chadd:rtg:0.7.4:*:*:*:*:*:*:*
cpe:2.3:a:adrian_chadd:rtg2:0.9.2:*:*:*:*:*:*:*

History

21 Nov 2024, 01:41

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2012/07/09/2 - () http://www.openwall.com/lists/oss-security/2012/07/09/2 -
References () https://code.google.com/p/rtg2/issues/detail?id=35 - () https://code.google.com/p/rtg2/issues/detail?id=35 -

Information

Published : 2012-07-12 19:55

Updated : 2024-11-21 01:41


NVD link : CVE-2012-3881

Mitre link : CVE-2012-3881

CVE.ORG link : CVE-2012-3881


JSON object : View

Products Affected

adrian_chadd

  • rtg2
  • rtg
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')