SQL injection vulnerability in modules/banners/click.php in the banners module for bcoos 1.0.10 allows remote attackers to execute arbitrary SQL commands via the bid parameter. NOTE: it was later reported that 1.0.13 is also affected.
| Software | From | Fixed in |
|---|---|---|
| bcoos / bcoos | 1.0.10 | 1.0.10.x |