SQL injection vulnerability in the create function in common/include/GroupJoinRequest.class in GForge 4.5 and 4.6 allows remote malicious users to execute arbitrary SQL commands via the comments variable.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
gforge gforge 4.5 |
||
gforge gforge 4.6 |