SQL injection vulnerability in PKR Internet Taskjitsu before 2.0.6 allows remote attackers to execute arbitrary SQL commands via the key parameter, when the limit query parameter is set to customerid.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Taskjitsu | Pkr_internet | * | 2.0.5 (including) |
| Taskjitsu | Pkr_internet | 0.1 (including) | 0.1 (including) |
| Taskjitsu | Pkr_internet | 2.0 (including) | 2.0 (including) |
| Taskjitsu | Pkr_internet | 2.0.1 (including) | 2.0.1 (including) |
| Taskjitsu | Pkr_internet | 2.0.3 (including) | 2.0.3 (including) |
| Taskjitsu | Pkr_internet | 2.0.4 (including) | 2.0.4 (including) |