Multiple SQL injection vulnerabilities in FusionZONE CouponZONE local.cfm in 4.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) companyid, (2) scat, and (3) coid parameters.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Couponzone | Fusionzone | 4.2 (including) | 4.2 (including) |