Total vulnerabilities in the database
Multiple SQL injection vulnerabilities in (1) index.php, (2) modules.php, or (3) admin.php in PostNuke 0.760-RC2 allow remote attackers to execute arbitrary SQL code via the catid parameter.
Software | From | Fixed in |
---|---|---|
postnuke_software_foundation / postnuke | 0.760_rc2 | 0.760_rc2.x |