A security flaw has been discovered in Campcodes Online Beauty Parlor Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/sales-reports-detail.php. The manipulation of the argument fromdate/todate results in sql injection. The attack can be launched remotely. The exploit has been released to the public and may be exploited.
| Software | From | Fixed in |
|---|---|---|
| campcodes / online_beauty_parlor_management_system | 1.0 | 1.0.x |