Critical severity9.8NVD Advisory· Published Apr 12, 2017· Updated May 13, 2026
CVE-2016-4337
CVE-2016-4337
Description
SQL injection vulnerability in the mgr.login.php file in Ktools.net Photostore before 4.7.5 allows remote attackers to execute arbitrary SQL commands via the email parameter in a recover_login action.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- packetstormsecurity.com/files/137734/Ktools-Photostore-4.7.5-Blind-SQL-Injection.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/40046/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.