Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action to directory.php, and other unspecified vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Prozilla_directory_script | Prozilla | * | * |