SQL injection vulnerability in albums.php in Ampache before 3.3.3.5 allows remote attackers to execute arbitrary SQL commands via the match parameter. NOTE: some details are obtained from third party information.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Ampache | Ampache | * | 3.3.3.4 (including) |
| Ampache | Ubuntu | devel | * |
| Ampache | Ubuntu | upstream | * |