SQL injection vulnerability in index.php in LifeType 1.0.4 allows remote attackers to execute arbitrary SQL commands via the articleId parameter in a ViewArticle action (viewarticleaction.class.php).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Lifetype | Lifetype | 1.0.2 (including) | 1.0.2 (including) |
Lifetype | Lifetype | 1.0.3 (including) | 1.0.3 (including) |
Lifetype | Lifetype | 1.0.4 (including) | 1.0.4 (including) |