SQL injection vulnerability in userlogin.jsp in Daffodil CRM 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified parameters in a login action.
References
Configurations
Information
Published : 2006-02-01 15:02
Updated : 2018-10-19 08:45
NVD link : CVE-2006-0510
Mitre link : CVE-2006-0510
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
daffodil_software
- daffodil_crm