SQL injection vulnerability in index.php in HC NEWSSYSTEM 1.0-4 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a komm aktion.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Newssystem | Hc_design | 1.0 (including) | 1.0 (including) |
Newssystem | Hc_design | 1.4 (including) | 1.4 (including) |