SQL injection vulnerability in Journal.inc.php in Neocrome Land Down Under (LDU) 8.x and earlier allows remote attackers to execute arbitrary SQL commands via the w parameter to journal.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Land_down_under | Neocrome | 800 (including) | 800 (including) |
Land_down_under | Neocrome | 801 (including) | 801 (including) |
Land_down_under | Neocrome | 802 (including) | 802 (including) |