SQL injection vulnerability in form.php in 360 Web Manager 3.0 allows remote malicious users to execute arbitrary SQL commands via the IDFM parameter.
360 web manager 360 web manager 3.0