SQL injection vulnerability in dl-search.php in PostNuke 0.750 and 0.760-RC2 allows remote attackers to execute arbitrary SQL commands via the show parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Postnuke | Postnuke_software_foundation | 0.750 (including) | 0.750 (including) |
| Postnuke | Postnuke_software_foundation | 0.760_rc2 (including) | 0.760_rc2 (including) |