SQL injection vulnerability in includes/core.inc.php in ODFaq 2.1.0 allows remote attackers to execute arbitrary SQL commands via the (1) cat and (2) srcText parameters to faq.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Odfaq | Oodie | 1.21b (including) | 1.21b (including) |
Odfaq | Oodie | 2.1.0 (including) | 2.1.0 (including) |