CVE-2008-0827: SQL Injection
Published Feb 19, 2008
·Updated
SQL injection vulnerability in the Books module of PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Affected Software
1 affected component
Phpnuke Book
Event History
Feb 19, 2008
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0827?
CVE-2008-0827 is considered a high severity vulnerability due to its potential to compromise database security through SQL injection.
2
How do I fix CVE-2008-0827?
To fix CVE-2008-0827, update the PHP-Nuke Books module to the latest version that contains the security patch.
3
What types of attacks can be executed using CVE-2008-0827?
CVE-2008-0827 allows attackers to execute arbitrary SQL commands that can manipulate or compromise the database.
4
Who is affected by CVE-2008-0827?
Any installation of PHP-Nuke that uses the Books module is affected by CVE-2008-0827 and could be targeted by attackers.
5
What data can be exposed due to CVE-2008-0827?
CVE-2008-0827 can lead to exposure of sensitive data stored in the database, including user information and credentials.