github.com/gophergala/sqldump is vulnerable to SQL Injection attacks. A specifically crafted attack statement through multiple functions such as dumptable
and dumprecord
, allows a malicious user to inject and execute arbitrary SQL queries on the target system.