CVE-2010-2460 | JCE-Tech Shareasale Script 1.0 merchant_product_list.php mechant_id sql injection (EDB-13949 / XFDB-59581)
A vulnerability was found in JCE-Tech Shareasale Script 1.0. It has been declared as critical. Affected is an unknown function of the file merchant_product_list.php. Such manipulation of the argument mechant_id leads to sql injection.
This vulnerability is uniquely identified as CVE-2010-2460. The attack can be launched remotely. Moreover, an exploit is present.