CVE

Id
67096  
CVE No.
CVE-2013-7149  
Status
Candidate  
Description
SQL injection vulnerability in www/delivery/axmlrpc.php (aka the XML-RPC delivery invocation script) in Revive Adserver before 3.0.2, and OpenX Source 2.8.11 and earlier, allows remote attackers to execute arbitrary SQL commands via the what parameter to an XML-RPC method.  
Phase
Assigned (20131219)  
Votes
None (candidate not yet proposed)  
Comments