SQL injection vulnerability in Arki-DB 1.0 and 2.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter in a view action (view.php) to index.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Arki-db | Arki-db | 1.0 (including) | 1.0 (including) |
Arki-db | Arki-db | 2.0 (including) | 2.0 (including) |