← Back

CVE-2010-3076

nvd nist
Published: Oct 14, 2010Modified: Apr 29, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The filter function in php/src/include.php in Simple Management for BIND (aka smbind) before 0.4.8 does not anchor a certain regular expression, which allows remote attackers to conduct SQL injection attacks and execute arbitrary SQL commands via the username parameter to the admin login page.

Affected (11)

Products: Blentz: Smbind
1 product
Smbind
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Blentz
Up to 0.4.7
Version 0.2.1
Version 0.2
Version 0.3.1
Version 0.4.1
Version 0.4.2
Version 0.4.3
Version 0.4.4
Version 0.4.5
Version 0.4.6
Version 0.4

Timeline

No history available yet.