CVE-2009-1655

CVE-2009-1655

CVE-2009-1655 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:P/A:P

Multiple SQL injection vulnerabilities in myaccount.php in Easy Scripts Answer and Question Script allow remote authenticated users to execute arbitrary SQL commands via the (1) user name (userid parameter) and (2) password.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.