SQL injection vulnerability in viewcat.php in the Core module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2007-0377.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Core_module | Xoops | * | * |