SQL injection vulnerability in general_functions.php in TankLogger 2.4 allows remote attackers to execute arbitrary SQL commands via the (1) livestock_id parameter to showInfo.php and (2) tank_id parameter, possibly to livestock.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tanklogger | Tanklogger | 2.4 (including) | 2.4 (including) |