Unrated severityNVD Advisory· Published Feb 11, 2010· Updated Apr 29, 2026
CVE-2010-0614
CVE-2010-0614
Description
SQL injection vulnerability in ajax.php in evalSMSI 2.1.03 allows remote attackers to execute arbitrary SQL commands via the query parameter in the (1) question action, and possibly the (2) sub_par or (3) num_quest actions.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- packetstormsecurity.org/1002-exploits/corelan-10-008-evalmsi.txtnvdExploit
- www.securityfocus.com/bid/38116nvdExploit
- secunia.com/advisories/38478nvdVendor Advisory
- www.corelan.be:8800/index.php/forum/security-advisories/corelan-10-008-evalmsi-2-1-03-multiple-vulnerabilities/nvd
- www.osvdb.org/62177nvd
- www.securityfocus.com/archive/1/509370/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/56152nvd
News mentions
0No linked articles in our index yet.