SQL injection vulnerability in post.php in Invision Gallery 2.0.6 allows remote attackers to execute arbitrary SQL commands via the album parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Invision_gallery | Invision_power_services | 2.0.6 (including) | 2.0.6 (including) |