CVE-2017-15579 | Phpsugar PHP Melody up to 2.7.2 Cookie watch.php aa_pages_per_page sql injection (EDB-44056)
A vulnerability was found in Phpsugar PHP Melody up to 2.7.2. It has been declared as critical. This impacts an unknown function of the file watch.php of the component Cookie Handler. Executing manipulation of the argument aa_pages_per_page can lead to sql injection.
The identification of this vulnerability is CVE-2017-15579. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.