01642 06 11 11 Arrange Call

CVE-2010-0122

CVE-2010-0122 · HIGH

CVE-2010-0122

Multiple SQL injection vulnerabilities in Employee Timeclock Software 0.99 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to (a) auth.php or (b) login_action.php.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.