cpe:/a:php_director:php_director:0.2 cpe:/a:php_director:php_director:0.21 CVE-2009-0604 2009-02-16T15:30:03.187-05:00 2017-09-28T21:33:55.670-04:00 7.5 NETWORK LOW NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2009-02-17T12:04:00.000-05:00 ALLOWS_OTHER_ACCESS BID 33694 EXPLOIT-DB 8014 VUPEN ADV-2009-0379 SQL injection vulnerability in index.php in PHP Director 0.21 and earlier allows remote attackers to execute arbitrary SQL commands via the searching parameter.