SQL injection vulnerability in functions.php in Web4Future Affiliate Manager PRO 4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Affiliate_manager_professional | Web4future | * | 4.1 (including) |