CVE-2008-0907: SQL Injection
Published Feb 22, 2008
·Updated
SQL injection vulnerability in the Inhalt module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Affected Software
1 affected component
PHP-Nuke Inhalt module
Event History
Feb 22, 2008
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-0907?
CVE-2008-0907 has a severity rating that indicates a high risk due to the possibility of remote SQL injection attacks.
2
How do I fix CVE-2008-0907?
To fix CVE-2008-0907, upgrade the Inhalt module of PHP-Nuke to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2008-0907?
CVE-2008-0907 is classified as an SQL injection vulnerability.
4
Who is affected by CVE-2008-0907?
The vulnerability in CVE-2008-0907 affects users of the Inhalt module in PHP-Nuke installations.
5
What can attackers do with CVE-2008-0907?
Attackers can exploit CVE-2008-0907 to execute arbitrary SQL commands on the backend database, leading to potential data loss or corruption.