phpMyFAQ Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2014-6045 - Vulnerability Database

phpMyFAQ Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2014-6045

High
Reference: CVE-2014-6045
Title: phpMyFAQ Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

SQL injection vulnerability in phpMyFAQ before 2.8.13 allows remote authenticated users with certain permissions to execute arbitrary SQL commands via vectors involving the restore function.