Security Advisory

CVE-2014-8294

7.5

Vulnerability Description

Multiple SQL injection vulnerabilities in Voice Of Web AllMyGuests 0.4.1 allow remote attackers to execute arbitrary SQL commands via the (1) allmyphp_cookie cookie to admin.php or the (2) Username or (3) Password.
Published Date October 15, 2014
Official Source NIST NVD Advisory