CVE-2004-0732: SQL Injection
SQL injection vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to execute arbitrary SQL statements via the instory parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-0732?
CVE-2004-0732 is considered a high severity vulnerability due to its potential for remote SQL execution.
How do I fix CVE-2004-0732?
To fix CVE-2004-0732, ensure you upgrade to a patched version of PHP-Nuke that addresses this SQL injection issue.
What types of systems are affected by CVE-2004-0732?
CVE-2004-0732 affects Php-Nuke version 8.0_final and possibly earlier versions of the software.
What impact does CVE-2004-0732 have on my website?
Exploitation of CVE-2004-0732 could allow attackers to manipulate your database or gain unauthorized access to sensitive information.
How can I identify if my site is vulnerable to CVE-2004-0732?
You can identify vulnerability to CVE-2004-0732 by reviewing your PHP-Nuke version and inspecting the Search module for the `instory` parameter handling.