SQL injection vulnerability in the abget_admin function in includes/nukesentinel.php in NukeSentinel 2.5.12 allows remote attackers to execute arbitrary SQL commands via base64-encoded data in an admin cookie.
References
Configurations
Information
Published : 2007-09-30 22:17
Updated : 2018-10-15 14:40
NVD link : CVE-2007-5151
Mitre link : CVE-2007-5151
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
nukescripts
- nukesentinel