SQL injection vulnerability in Extended Tracker (xtracker) 4.7 before 1.5.2.1 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to parameters from URLs.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Extended_tracker | Drupal | 4.7 (including) | 4.7 (including) |