SQL injection vulnerability in categories-x.php in WebTitan before 4.04 allows remote attackers to execute arbitrary SQL commands via the sortkey parameter.
References
Configurations
Information
Published : 2014-06-18 07:55
Updated : 2014-06-19 07:18
NVD link : CVE-2014-4307
Mitre link : CVE-2014-4307
JSON object : View
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
Products Affected
webtitan
- webtitan