CVE-2017-18346
03.07.2019, 17:15
SQL injection vulnerability in /wbg/core/_includes/authorization.inc.php in CMS Web-Gooroo through 2013-01-19 allows remote attackers to execute arbitrary SQL commands via the wbg_login parameter.
Vendor | Product | Version |
---|---|---|
web-gooroo | cms_web-gooroo | 𝑥 ≤ 2013-01-19 |
𝑥
= Vulnerable software versions