CVE-2010-4751
LightNEasy 3.2.1 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in LightNEasy.php in LightNEasy 3.2.1, when magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via the id parameter in an edituser action, a different vector than CVE-2008-6593, CVE-2010-3484, and CVE-2010-3485.
Exploits (1)
References (5)
Scores
EPSS
0.0014
EPSS Percentile
34.1%
Details
CWE
CWE-89
Status
published
Products (1)
lightneasy/lightneasy
3.2.1
Published
Mar 01, 2011
Tracked Since
Feb 18, 2026