Total vulnerabilities in the database
Multiple SQL injection vulnerabilities in e107 0.615 allow remote attackers to inject arbitrary SQL code and gain sensitive information via (1) content parameter to content.php, (2) content_id parameter to content.php, or (3) list parameter to news.php.
Software | From | Fixed in |
---|---|---|
e107 / e107 | 0.615a | 0.615a.x |
e107 / e107 | 0.615 | 0.615.x |