Description - SQL Injection Vulnerability in PHPjournaler

SQL Injection found in PHPjournaler script.

Exploit
Available
Solution
Not available - check vendor's website

Vulnerable scripts: index.php

Variable $readold isn't properly sanitized before being used in a SQL query. This can be used to make any SQL query by injecting arbitrary SQL code.

Administrator's password is threatened.

Order Source Code Analysis made by eVuln

Prevent hacking by source code review of your site or web application done by Aliaksandr Hartsuyeu.The work will be done by experts in web security.