SQL injection vulnerability in cisco/services/PhonecDirectory.php in Fonality Trixbox 2.2.4 allows remote attackers to execute arbitrary SQL commands via the ID parameter.
References
Configurations
Information
Published : 2010-02-23 20:30
Updated : 2017-08-17 01:32
NVD link : CVE-2010-0702
Mitre link : CVE-2010-0702
JSON object : View
Products Affected
fonality
- trixbox
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
