SQL injection vulnerability in manage_account.php in Tux Racer TuxBank 0.7x and 0.8 allows remote attackers to execute arbitrary SQL commands via the id parameter in a manageaccount action to index.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tuxbank | Tux_racer | 0.7x (including) | 0.7x (including) |
Tuxbank | Tux_racer | 0.8 (including) | 0.8 (including) |