ThinkSAAS prior to 3.38 contains a SQL injection vulnerability through app/topic/action/admin/topic.php via the title parameter, which allows remote malicious users to execute arbitrary SQL commands.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
thinksaas thinksaas |