FileRun (version 2017.09.18 and below) suffers from a remote SQL injection vulnerability due to a failure to sanitize input in the metafield parameter inside the metasearch module (under the search function).
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
filerun filerun |