CVE-2009-0646 | 4Site 4Site CMS up to 2.6 Login pcgi/4site.pl th sql injection (EDB-7964 / XFDB-48488)
A vulnerability, which was classified as critical, has been found in 4Site 4Site CMS up to 2.6. Affected by this issue is some unknown functionality of the file pcgi/4site.pl of the component Login. The manipulation of the argument th leads to sql injection.
This vulnerability is handled as CVE-2009-0646. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.