296,293
Total vulnerabilities in the database
SQL injection vulnerability in index.php in NetRisk 1.9.7 and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via the pid parameter in a profile page (possibly profile.php).
Software | From | Fixed in |
---|---|---|
netrisk / netrisk | 1.9.7 | 1.9.7.x |