Description
|
|
A new vulnerability was identified in ASP Virtual News Manager, which may be exploited by remote attackers to execute arbitrary SQL commands. This flaw is due to an input validation error in the "admin_login.asp" file that does not properly filter the "password" parameter, which may be exploited by remote attackers to bypass the authentication process and conduct SQL injection attacks.
|