SQL injection vulnerability in viewmsg.asp in LocazoList Classifieds 1.05e allows remote attackers to execute arbitrary SQL commands via the msgid parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Locazolist_classifieds | Locazo | 1.03c (including) | 1.03c (including) |
| Locazolist_classifieds | Locazo | 1.04d (including) | 1.04d (including) |
| Locazolist_classifieds | Locazo | 1.05e (including) | 1.05e (including) |