Multiple SQL injection vulnerabilities in Prozilla Directory Script allow remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action to directory.php, and other unspecified vectors.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Prozilla_directory_script | Prozilla | * | * |