SQL injection vulnerability in onlinestatus_html.php in Turnkey PHP Live Helper 2.0.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the dep parameter, related to lack of input sanitization in the get function in global.php.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
turnkeywebtools php live helper 2.0 |
||
turnkeywebtools php live helper |