← Back to CVE List

CVE-2016-2555

Published: 2017-04-13T14:59Z
Last Modified: 2024-11-21T02:48Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
SQL injection vulnerability in include/lib/mysql_connect.inc.php in ATutor 2.2.1 allows remote attackers to execute arbitrary SQL commands via the searchFriends function to friends.inc.php. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt