Unrated severityNVD Advisory· Published Jun 4, 2009· Updated Apr 23, 2026
CVE-2009-1910
CVE-2009-1910
Description
SQL injection vulnerability in index.php in RTWebalbum 1.0.462 allows remote attackers to execute arbitrary SQL commands via the AlbumId parameter.
Affected products
1- cpe:2.3:a:rafal_kucharski:rtwebalbum:1.0.462:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.securityfocus.com/bid/34888nvdExploit
- secunia.com/advisories/35022nvdVendor Advisory
- rtwebalbum.svn.sourceforge.net/viewvc/rtwebalbum/nvd
- rtwebalbum.svn.sourceforge.net/viewvc/rtwebalbum/index.phpnvd
- www.securityfocus.com/archive/1/503374/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/50406nvd
- www.exploit-db.com/exploits/8648nvd
News mentions
0No linked articles in our index yet.