CVE-2007-4984: SQL Injection
Published Sep 19, 2007
·Updated
SQL injection vulnerability in index.php in the Ktauber.com StylesDemo mod for phpBB 2.0.xx allows remote attackers to execute arbitrary SQL commands via the s parameter.
Affected Software
2 affected components
Ktauber StylesDemo=0.9.9
phpBB phpbb<=2.0.22
Event History
Sep 19, 2007
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
07:17 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2007-4984?
CVE-2007-4984 is considered a high severity vulnerability due to its potential for remote SQL injection.
2
How do I fix CVE-2007-4984?
To fix CVE-2007-4984, update the Ktauber StylesDemo mod to a version that addresses the SQL injection issue.
3
What software versions are affected by CVE-2007-4984?
CVE-2007-4984 affects Ktauber StylesDemo version 0.9.9 when used with phpBB versions up to 2.0.22.
4
What type of vulnerability is CVE-2007-4984?
CVE-2007-4984 is an SQL injection vulnerability that allows attackers to execute arbitrary SQL commands.
5
Who is impacted by CVE-2007-4984?
Users of the Ktauber StylesDemo mod for phpBB 2.0.xx are impacted by CVE-2007-4984.