SQL injection vulnerability in Lyris ListManager 5.0 up to and including 8.9a allows remote malicious users to execute arbitrary SQL commands via SQL code after a numeric argument to a /read/attachment URL.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
lyris list manager 5.0 |
||
lyris list manager 6.0 |
||
lyris list manager 7.0 |
||
lyris list manager 8.0 |
||
lyris list manager 8.8a |