Total vulnerabilities in the database
Multiple SQL injection vulnerabilities in NPDS 4.8 and 5.0 allow remote attackers to execute arbitrary SQL commands via the thold parameter to (1) comments.php or (2) pollcomments.php.
Software | From | Fixed in |
---|---|---|
npds / npds | 5.0 | 5.0.x |
npds / npds | 4.8 | 4.8.x |