Qualitor up to and including 8.20 allows remote malicious users to execute arbitrary code via PHP code in the html/ad/adpesquisasql/request/processVariavel.php gridValoresPopHidden parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qualitor qalitor |