Description
SQL injection vulnerability in include/get_read.php in Extensible-BioLawCom CMS (X-BLC) 0.2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the section parameter.
Affected products
- bow_der_kleine / x-blc0.2.0
- bow_der_kleine / x-blc0.1.4 – 0.1.4