cve/2008/CVE-2008-6258.md
2024-06-18 02:51:15 +02:00

695 B

CVE-2008-6258

Description

SQL injection vulnerability in users.asp in QuadComm Q-Shop 3.0, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the (1) UserID and (2) Pwd parameters. NOTE: this might be related to CVE-2004-2108.

POC

Reference

Github

No PoCs found on GitHub currently.