install/installNewDB.php in TestLink up to and including 1.9.16 allows remote malicious users to conduct injection attacks by leveraging control over DB LOGIN NAMES data during installation to provide a long, crafted value.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
testlink testlink |