CVE-2009-2573
CVE-2009-2573 · MEDIUM Severity
AV:N/AC:M/AU:S/C:P/I:P/A:P
Multiple SQL injection vulnerabilities in MiniTwitter 0.2 beta, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via the (1) user parameter to (a) index.php and (b) rss.php.
Learn more about our Cis Benchmark Audit For Microsoft Sql Server.