SQL injection vulnerability in the jeuxflash module for KwsPHP allows remote malicious users to execute arbitrary SQL commands via the cat parameter to index.php, a different vector than CVE-2007-4922.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
jeuxflash jeuxflash_module |
||
kwsphp kwsphp |