SQLi Vulnerability in ATuter management system

From: sirus.shahini@gmail.com
To: bugtraq@securityfocus.com
Cc:
Subject: SQLi Vulnerability in ATuter management system
Date:


The vulnerability resides in:
mods/_standard/assignments/add_assignment.php at line 247 and the variable $assign_to.

The vendor failed to request a CVE number. So I decided to request one here.





Copyright © 1995-2018 LinuxRocket.net. All rights reserved.