CVE

Id
38400  
CVE No.
CVE-2009-0965  
Status
Candidate  
Description
SQL injection vulnerability in functions/browse.php in Ganesha Digital Library (GDL) 4.0 and 4.2 allows remote attackers to execute arbitrary SQL commands via the node parameter in a browse action to gdl.php.  
Phase
Assigned (20090318)  
Votes
None (candidate not yet proposed)  
Comments