CVE-2009-4792
BandSite CMS 1.1.4 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in includes/content/member_content.php in BandSite CMS 1.1.4 allows remote attackers to execute arbitrary SQL commands via the memid parameter to members.php.
Exploits (1)
Scores
EPSS
0.0084
EPSS Percentile
74.5%
Classification
CWE
CWE-89
Status
draft
Affected Products (1)
karl_core/bandsite_cms
Timeline
Published
Apr 22, 2010
Tracked Since
Feb 18, 2026