Vastal I-tech phpVID 1.2.3 SQL Injection Security Vulnerabilities

Posted by Jing Wang on Mar 10

*Vastal I-tech phpVID 1.2.3 SQL Injection Security Vulnerabilities*

Exploit Title: Vastal I-tech phpVID /groups.php Multiple Parameters SQL
Injection Security Vulnerabilities
Product: phpVID
Vendor: Vastal I-tech
Vulnerable Versions: 1.2.3 0.9.9
Tested Version: 1.2.3 0.9.9
Advisory Publication: March 10, 2015
Latest Update: March 10, 2015
Vulnerability Type: Improper Neutralization of Special Elements used in an
SQL Command (‘SQL…

Leave a Reply