SQL injection vulnerability in LogicBill 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) __mode and (2) __id parameters to helpdesk.php.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Logicbill | Logicnow | * | 1.0 (including) |
References