Vulnerable Systems:
* Accomplishtechnology Phpmydirectory 1.3.3 and prior
phpMyDirectory is vulnerable to SQL injection. A remote attacker could send specially-crafted SQL statements to the page.php script using the id parameter, which could allow the attacker to view, add, modify or delete information in the back-end database.
Vendor Status:
Vendor had issued an update for this Vulnerability.