CVE-2012-0994
EUVD-2012-101721.02.2012, 13:31
SQL injection vulnerability in the Manage Albums feature in zp-core/admin-albumsort.php in ZENphoto 1.4.2 allows remote authenticated users to execute arbitrary SQL commands via the sortableList parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zenphoto | zenphoto | 1.4.2 |
𝑥
= Vulnerable software versions
References