SQL injection vulnerability in profile.php in David Bennett PHP-Post (PHPp) 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the user parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Php-post |
David_bennett |
* |
1.0 (including) |
References