PublicCVE

CVE-2009-1764

UNRATEDJSON exportCreate alert

Description

SQL injection vulnerability in inc/ajax.asp in MaxCMS 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a digg action.

Affected products