Multiple SQL injection vulnerabilities in PHP JackKnife (PHPJK) allow remote attackers to execute arbitrary SQL commands via (1) the iCategoryUnq parameter to G_Display.php or (2) the iSearchID parameter to Search/DisplayResults.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php_jackknife | Php_jackknife | 2.21 (including) | 2.21 (including) |