SQL injection vulnerability in glossaire-p-f.php in the Glossaire 1.7 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the sid parameter in an ImprDef action.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Xoops_glossaire_module | Xoops | * | 1.7 (including) |