Multiple SQL injection vulnerabilities in Infinitytechs Restaurants CM allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in rating.asp, (2) the mealid parameter in meal_rest.asp, and (3) the resid parameter in res_details.asp.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Infinitytechs_restaurants_cm | Infinity_technologies | * | * |