SQL injection vulnerability in shared/code/cp_functions_downloads.php in Nicola Asuni All In One Control Panel (AIOCP) before 1.3.009 allows remote attackers to execute arbitrary SQL commands via the download_category parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
All_in_one_control_panel | Nicola_asuni | 1.3.000 (including) | 1.3.000 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.001 (including) | 1.3.001 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.002 (including) | 1.3.002 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.003 (including) | 1.3.003 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.004 (including) | 1.3.004 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.005 (including) | 1.3.005 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.006 (including) | 1.3.006 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.007 (including) | 1.3.007 (including) |
All_in_one_control_panel | Nicola_asuni | 1.3.008 (including) | 1.3.008 (including) |