Multiple SQL injection vulnerabilities in yonetici.asp in Berthanas Ziyaretci Defteri 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) Pass fields.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Defteri | Berthanas_ziyaretci | 2.0 (including) | 2.0 (including) |