SQL injection vulnerability in loadorder.php in NKInFoWeb 2.5 and 5.2.2.0 allows remote malicious users to execute arbitrary SQL commands via the id_sp parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
nkinfoweb nkinfoweb 5.2.2.0 |
||
nkinfoweb nkinfoweb 2.5 |