SQL injection vulnerability in faq.php in ExoPHPDesk 1.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Exophpdesk | Exo | 1.2 (including) | 1.2 (including) |
| Exophpdesk | Exo | 1.2.1 (including) | 1.2.1 (including) |