Unrated severityNVD Advisory· Published Jul 14, 2009· Updated Jun 16, 2026
CVE-2009-2451
CVE-2009-2451
Description
Multiple SQL injection vulnerabilities in index.php in MIM:InfiniX 1.2.003 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parameters in a calendar action, or (3) a search term in the search form.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:mim.infinix:infinix:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:mim.infinix:infinix:*:*:*:*:*:*:*:*range: <=1.2.003
- (no CPE)range: <=1.2.003
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.