TROYANOSYVIRUS
Back to CVEs

CVE-2010-2098

N/A

Description

Incomplete blacklist vulnerability in usersettings.php in e107 0.7.20 and earlier allows remote attackers to conduct SQL injection attacks via the loginname parameter.

This product uses data from the NVD API but is not endorsed or certified by the NVD.