High
CVSS 7.5
Overview
SQL injection vulnerability in profile.php in PHPenpals allows remote attackers to execute arbitrary SQL commands via the personalID parameter. NOTE: it was later reported that 1.1 and earlier are affected.
SQL injection vulnerability in profile.php in PHPenpals allows remote attackers ...
SQL injection vulnerability in profile.php in PHPenpals allows remote attackers to execute arbitrary SQL commands via the personalID parameter. NOTE: it was later reported that 1.1 and earlier are affected.
This vulnerability is rated 🟠 HIGH.
Recommended actions: