CVE

Id
15285  
CVE No.
CVE-2005-4081  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in Alisveristr E-commerce allow remote attackers to bypass authentication and possibly execute arbitrary SQL commands via the username and password parameters in (1) the user login and (2) administrator login pages.  
Phase
Assigned (20051208)  
Votes
None (candidate not yet proposed)  
Comments