Multiple SQL injection vulnerabilities in index.php in InterAKT MX Kart 1.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) idp, (2) id_ctg, or (3) id_man parameter.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=111230101127767&w=2 | mailing list |
http://secunia.com/advisories/14793 | third party advisory |
http://icis.digitalparadox.org/~dcrab/mxmk.txt |