SQL injection vulnerability in Akarru Social BookMarking Engine before 0.4.3.4 allows remote attackers to execute arbitrary SQL commands via unknown attack vectors, possibly involving the username parameter to akarru.lib/users.php.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Social_bookmarking_engine | Akarru | 0.4.3.2 (including) | 0.4.3.2 (including) |
| Social_bookmarking_engine | Akarru | 0.4.3.3 (including) | 0.4.3.3 (including) |