CVE-2008-0880: SQL Injection
Published Feb 21, 2008
·Updated
SQL injection vulnerability in modules.php in the EasyContent module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the pageid parameter.
Affected Software
1 affected component
Phpnuke Easycontent Module
Event History
Feb 21, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0880?
CVE-2008-0880 is classified as a high-severity vulnerability due to the potential for remote code execution through SQL injection.
2
How do I fix CVE-2008-0880?
To fix CVE-2008-0880, update the EasyContent module to the latest version that addresses SQL injection vulnerabilities.
3
What type of vulnerability is CVE-2008-0880?
CVE-2008-0880 is an SQL injection vulnerability that allows for the execution of arbitrary SQL commands.
4
Which software is affected by CVE-2008-0880?
CVE-2008-0880 affects the EasyContent module for PHP-Nuke.
5
Can CVE-2008-0880 lead to data compromise?
Yes, CVE-2008-0880 can lead to data compromise since attackers can execute arbitrary SQL commands.