SQL injection vulnerability in index.php in phpoutsourcing Zorum Forum 3.5 and previous versions allows remote malicious users to execute arbitrary SQL commands via the rollid parameter in the showhtmllist method.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phpoutsourcing zorum 3.2 |
||
phpoutsourcing zorum 3.3 |
||
phpoutsourcing zorum 3.4 |
||
phpoutsourcing zorum 3.5 |
||
phpoutsourcing zorum 3.0 |
||
phpoutsourcing zorum 3.1 |