Security Advisory

CVE-2010-2460

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-06-25 21:00:00
Last updated 2024-08-07 02:32:16
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in merchant_product_list.php in JCE-Tech Shareasale Script (SASS) 1 allows remote attackers to execute arbitrary SQL commands via the mechant_id parameter.