CVE-2009-3503

CVE-2009-3503

CVE-2009-3503 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Multiple SQL injection vulnerabilities in search.aspx in BPowerHouse BPHolidayLettings 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) rid and (2) tid parameters.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.