SQL injection vulnerability in modules/adresses/ratefile.php in bcoos 1.0.10 and earlier allows remote attackers to execute arbitrary SQL commands via the lid parameter, a different vector than CVE-2007-6266.
| Software | From | Fixed in |
|---|---|---|
| bcoos / bcoos | - | 1.0.10.x |