CVE-2009-2573

CVE-2009-2573

CVE-2009-2573 · MEDIUM Severity

AV:N/AC:M/AU:S/C:P/I:P/A:P

Multiple SQL injection vulnerabilities in MiniTwitter 0.2 beta, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via the (1) user parameter to (a) index.php and (b) rss.php.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.