SQL injection vulnerability in rmgs/images.php in the RMSOFT Gallery System 2.0 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter.
| Software | From | Fixed in |
|---|---|---|
| rmsoft / gallery_system | 2.0 | 2.0.x |
| xoops / xoops | - | - |