CVE-2010-1599
Nkinfoweb - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in loadorder.php in NKInFoWeb 2.5 and 5.2.2.0 allows remote attackers to execute arbitrary SQL commands via the id_sp parameter.
Exploits (1)
Scores
EPSS
0.0046
EPSS Percentile
64.2%
Details
CWE
CWE-89
Status
published
Products (2)
nkinfoweb/nkinfoweb
2.5
nkinfoweb/nkinfoweb
5.2.2.0
Published
Apr 29, 2010
Tracked Since
Feb 18, 2026