CVE-2004-1972: SQL Injection
Published Apr 26, 2004
·Updated
SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execute arbitrary SQL code via the (1) clipid or (2) catid parameters in a viewclip, viewcat, or voteclip action.
Affected Software
1 affected component
Francisco Burzi PHP-Nuke=7.2
Event History
Apr 26, 2004
CVE Published
04:00 AM
May 10, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What versions of PHP-Nuke are affected by CVE-2004-1972?
CVE-2004-1972 specifically affects PHP-Nuke Video Gallery Module 0.1 Beta 5 in PHP-Nuke version 7.2.