SQL injection vulnerability in projects/project-edit.asp in Digger Solutions Intranet Open Source (IOS) version 2.7.2 allows remote attackers to execute arbitrary SQL commands via the project_id parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Intranet_open_source | Digger_solutions | 2.7.2 (including) | 2.7.2 (including) |