Vulnerabilities > Avbooklibrary

DATE CVE VULNERABILITY TITLE RISK
2009-01-29 CVE-2009-0332 SQL Injection vulnerability in Avbooklibrary 1.0.0/1.0.1
Multiple SQL injection vulnerabilities in AV Book Library before 1.1 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) admin/edit.php, (2) admin/add.php, (3) lib/book_search.php, and possibly other components.
network
low complexity
avbooklibrary CWE-89
7.5