Multiple SQL injection vulnerabilities in index.php in NeLogic Nephp Publisher 4.5.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id and (2) nnet_catid parameters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Nephp_publisher | Nelogic_technologies | * | 4.5.2 (including) |