SQLiteManager 1.20 and 1.24 allows SQL injection via the /sqlitemanager/main.php dbsel parameter. NOTE: This product is discontinued.Referenceshttp://seclists.org/fulldisclosure/2019/Feb/51