Description
SQL injection vulnerability in detail.php in Simple Document Management System (SDMS) allows remote attackers to execute arbitrary SQL commands via the doc_id parameter.
Affected products
- cafuego / simple_document_management_system1.1.4 – 1.1.4
- cafuego / simple_document_management_system1.1.5 – 1.1.5
- cafuego / simple_document_management_system1.1.6 – 1.1.6