Unrated severityNVD Advisory· Published Jul 8, 2009· Updated Apr 23, 2026
CVE-2009-2366
CVE-2009-2366
Description
SQL injection vulnerability in login.asp in DataCheck Solutions ForumPal FE 1.1 and ForumPal 1.5 allows remote attackers to execute arbitrary SQL commands via the (1) password parameter in 1.1 and (2) p_password parameter in 1.5. NOTE: some of these details are obtained from third party information.
Affected products
2- cpe:2.3:a:datachecknh:forumpal:1.5:*:*:*:*:*:*:*
- cpe:2.3:a:datachecknh:forumpal_fe:1.1:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.osvdb.org/55496nvdExploit
- www.osvdb.org/55497nvdExploit
- secunia.com/advisories/35589nvdVendor Advisory
- secunia.com/advisories/35603nvdVendor Advisory
- www.exploit-db.com/exploits/9024nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/51403nvd
News mentions
0No linked articles in our index yet.