CVE-2007-1847: SQL Injection
Published Apr 3, 2007
·Updated
SQL injection vulnerability in viewcat.php in the Repository module for Xoops allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Affected Software
1 affected component
Xoops Repository module
Event History
Apr 3, 2007
CVE Published
04:19 PM
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-1847?
CVE-2007-1847 is classified as a medium severity vulnerability due to the potential for remote SQL injection attacks.
2
How do I fix CVE-2007-1847?
To address CVE-2007-1847, ensure that you sanitize and validate input in the cid parameter of the viewcat.php file.
3
What software is affected by CVE-2007-1847?
CVE-2007-1847 affects the Repository module for Xoops.
4
Can CVE-2007-1847 be exploited remotely?
Yes, CVE-2007-1847 allows remote attackers to execute arbitrary SQL commands.
5
What is the impact of exploiting CVE-2007-1847?
Exploiting CVE-2007-1847 can lead to unauthorized data access, data manipulation, or database compromise.