VYPR
Unrated severityNVD Advisory· Published Oct 22, 2012· Updated Jun 16, 2026

CVE-2012-4990

CVE-2012-4990

Description

SQL injection vulnerability in admin/campaign-zone-link.php in OpenX 2.8.10 before revision 81823 allows remote attackers to execute arbitrary SQL commands via the ids[] parameter in a link action.

Affected products

2
  • Openx/Openx2 versions
    cpe:2.3:a:openx:openx:2.8.10:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:openx:openx:2.8.10:*:*:*:*:*:*:*
    • (no CPE)range: <=2.8.10

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.