SQL injection vulnerability in displaypic.asp in Xtreme ASP Photo Gallery allows remote attackers to inject arbitrary SQL commands via the sortorder parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xtremeasp_photogallery | Pensacola_web_designs | 2.0 (including) | 2.0 (including) |