SQL injection vulnerability in index.php in Comdev Vote Caster 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the campaign_id parameter in a result action.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Comdev_vote_caster | Comdev | * | 3.1 (including) |