Multiple SQL injection vulnerabilities in AlstraSoft AskMe Pro allow remote attackers to execute arbitrary SQL commands via the (1) que_id parameter to forum_answer.php or (2) the cat_id parameter to search.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Askme_pro | Alstrasoft | * | * |