SQL injection vulnerability in include.php in PHPKIT 1.6.03 through 1.6.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
| Software | From | Fixed in |
|---|---|---|
| phpkit / phpkit | 1.6.02 | 1.6.02.x |
| phpkit / phpkit | 1.6.03 | 1.6.03.x |
| phpkit / phpkit | 1.6.1 | 1.6.1.x |