First published: Wed Feb 20 2008(Updated: )
SQL injection vulnerability in indexen.php in Simple CMS 1.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the area parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simple Cms | =1.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0835 is considered to be of high severity due to its potential for remote code execution via SQL injection.
To fix CVE-2008-0835, update Simple CMS to version 1.0.4 or later and implement input validation for the 'area' parameter.
CVE-2008-0835 affects Simple CMS version 1.0.3 and earlier.
CVE-2008-0835 is a SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands.
Yes, CVE-2008-0835 can lead to data theft, unauthorized access, and manipulation of the database.