SQL injection vulnerability in view.php in Hobosworld HobSR 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) arrange and (2) p parameters.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Hobsr |
Hobosworld |
* |
1.0 (including) |
References