296,317
Total vulnerabilities in the database
Multiple SQL injection vulnerabilities in AFFcommerce 1.1.4 allow remote attackers to execute arbitrary SQL commands via (1) the cl parameter to SubCategory.php and the item_id parameter in (2) ItemInfo.php and (3) ItemReview.php.
Software | From | Fixed in |
---|---|---|
affcommerce / affcommerce | 1.1.4 | 1.1.4.x |