SQL injection vulnerability in index.php in Entergal MX 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) idcat parameter in a showcat action and (2) the action parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Entergal_mx | Entergal_mx | 2.0 (including) | 2.0 (including) |