CVE-2010-1599 | NKInFoWeb 2.5/5.2.2.0 loadorder.php id_sp sql injection (EDB-12354 / XFDB-58082)
A vulnerability identified as critical has been detected in NKInFoWeb 2.5/5.2.2.0. The affected element is an unknown function of the file loadorder.php. Performing manipulation of the argument id_sp results in sql injection.
This vulnerability is identified as CVE-2010-1599. The attack can be initiated remotely. Additionally, an exploit exists.