CVE-2011-0510

SQL injection vulnerability in cart.php in Advanced Webhost Billing System (AWBS) 2.9.2 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the oid parameter in an add_other action.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:awbs:advanced_webhost_billing_system:*:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0.5:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.1.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.1.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.1.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.2.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.2.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.2.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.2.3:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.3.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.3.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.3.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.3.3:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.4.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.4.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.5:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.5.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.5.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.6.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.6.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.6.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.6.3:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7.3:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7.4:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.7.5:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.8.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.8.1:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.8.2:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.8.3:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.8.4:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.8.5:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.9.0:*:*:*:*:*:*:*
cpe:2.3:a:awbs:advanced_webhost_billing_system:2.9.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-01-20 19:00

Updated : 2024-02-28 11:41


NVD link : CVE-2011-0510

Mitre link : CVE-2011-0510

CVE.ORG link : CVE-2011-0510


JSON object : View

Products Affected

awbs

  • advanced_webhost_billing_system
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')