Description
SQL injection vulnerability in include/functions.php in BtiTracker before 1.4.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Affected products
- btiteam / btitracker1.4.4
- btiteam / btitracker1.3.2 – 1.3.2
- btiteam / btitracker1.4.1 – 1.4.1
- btiteam / btitracker1.4.2 – 1.4.2
- btiteam / btitracker1.4.3 – 1.4.3