SQL injection vulnerability in viewmsg.asp in LocazoList Classifieds 1.05e allows remote attackers to execute arbitrary SQL commands via the msgid parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Locazolist_classifieds | Locazo | 1.03c (including) | 1.03c (including) |
Locazolist_classifieds | Locazo | 1.04d (including) | 1.04d (including) |
Locazolist_classifieds | Locazo | 1.05e (including) | 1.05e (including) |