Security Advisory
CVE-2012-2923
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
SQL injection vulnerability in news.php4 in Hypermethod eLearning Server 4G allows remote attackers to execute arbitrary SQL commands via the nid parameter.