cpe:/a:commodityrentals:cd_rental_software CVE-2010-0762 2010-03-02T13:30:00.900-05:00 2017-08-16T21:32:06.540-04:00 7.5 NETWORK LOW NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2010-03-03T10:54:00.000-05:00 EXPLOIT-DB 11401 BID 38184 SECUNIA 38519 OSVDB 62278 XF cdrentals-index-sql-injection(56209) MISC http://packetstormsecurity.org/1002-exploits/cdrentals-sql.txt MISC http://www.indonesiancoder.org/cd-rentals-script-sql-injection-vulnerability SQL injection vulnerability in index.php in CommodityRentals CD Rental Software allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a catalog action.