SQL injection vulnerability in genre.php in the debaser 0.92 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the genreid parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Debaser | Myxoops | * | 0.92 (including) |