Multiple SQL injection vulnerabilities in the get_record function in datalib.php in Moodle 1.5.2 allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) category.php and (2) info.php.
References
Configurations
Information
Published : 2005-11-17 03:02
Updated : 2017-07-10 18:33
NVD link : CVE-2005-3648
Mitre link : CVE-2005-3648
JSON object : View
CWE
Products Affected
moodle
- moodle