Multiple SQL injection vulnerabilities in RedCMS 0.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters to (a) login.php or (b) register.php; or (3) u parameter to (c) profile.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Redcms | Redcms | 0.1 (including) | 0.1 (including) |