CVE

Id
54269  
CVE No.
CVE-2012-1026  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.  
Phase
Assigned (20120207)  
Votes
None (candidate not yet proposed)  
Comments