SQL injection vulnerability in merchants/index.php in Post Affiliate Pro 2.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the sortorder parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Post_affiliate_pro | Post_affiliate_pro | * | 2.0.4 (including) |