SQL injection vulnerability in lire-avis.php in ProNews 1.5 allows remote attackers to execute arbitrary SQL commands via the aa parameter.
Affected Software
| Name | Vendor | Start Version | End Version |
|---|
| Pronews | Scriptphp | 1.5 (including) | 1.5 (including) |
References