Multiple SQL injection vulnerabilities in Nuked Klan 1.7 allow remote attackers to execute arbitrary SQL commands via the (1) forum_id or (2) thread_id parameter in the Forum file, (3) the link_id in the Links file, (4) the artid parameter in the Sections file, and (5) the dl_id parameter in the Download file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Nuked-klan | Nuked-klan | 1.7 (including) | 1.7 (including) |