Multiple SQL injection vulnerabilities in eSyndiCat allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to news.php or (2) the name parameter to page.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Esyndicat_directory | Esyndicat | 1.6 (including) | 1.6 (including) |