First published: Fri Oct 07 2011(Updated: )
SQL injection vulnerability in index.php in BloofoxCMS 0.3.5 allows remote attackers to execute arbitrary SQL commands via the gender parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bloofox | =0.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4870 is classified as a high severity vulnerability due to the potential for remote SQL command execution.
To fix CVE-2010-4870, it is recommended to update BloofoxCMS to a newer version that addresses this SQL injection vulnerability.
CVE-2010-4870 specifically affects users of BloofoxCMS version 0.3.5.
CVE-2010-4870 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.
The vulnerability in CVE-2010-4870 can be exploited via the 'gender' parameter in index.php.