Multiple SQL injection vulnerabilities in photokorn 1.53 and 1.542 allow remote attackers to execute arbitrary SQL commands via the (1) cat, (2) pic and (3) page parameter in index.php; (4) id parameter in postcard.php; and (5) cat parameter in print.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Photokorn | Photokorn | 1.53 (including) | 1.53 (including) |
Photokorn | Photokorn | 1.542 (including) | 1.542 (including) |