Description
SQL injection vulnerability in Blue Eye CMS 1.0.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the BlueEyeCMS_login cookie parameter.
Affected products
- amunak / blue_eye_cms1.0.0
- amunak / blue_eye_cms1.0.0 – 1.0.0