SQL injection vulnerability in info_book.asp in Digirez 3.4 and earlier allows remote attackers to execute arbitrary SQL commands via the book_id parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Digirez |
Digiappz |
* |
3.4 (including) |
References