First published: Wed Mar 23 2011(Updated: )
SQL injection vulnerability in pdf.php in AuraCMS 1.62 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-4804 and CVE-2007-4171.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tina Tinacms | =1.62 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4774 is considered a critical vulnerability due to the potential for remote attackers to execute arbitrary SQL commands.
To fix CVE-2010-4774, it is recommended to update AuraCMS to a version that is not affected by this SQL injection vulnerability.
CVE-2010-4774 specifically affects AuraCMS version 1.62.
CVE-2010-4774 is an SQL injection vulnerability that allows for the execution of arbitrary SQL commands.
The potential impacts of CVE-2010-4774 include unauthorized access to the database and manipulation of data.