CVE-2009-2310
Extensible-BioLawCom CMS <0.2.0 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in include/get_read.php in Extensible-BioLawCom CMS (X-BLC) 0.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the section parameter.
Exploits (1)
Scores
EPSS
0.0028
EPSS Percentile
50.7%
Classification
CWE
CWE-89
Status
draft
Affected Products (2)
bow_der_kleine/x-blc
< 0.2.0
bow_der_kleine/x-blc
Timeline
Published
Jul 02, 2009
Tracked Since
Feb 18, 2026