CVE-2008-0936: SQL Injection
SQL injection vulnerability in index.php in the Prayer List (prayerlist) 1.04 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a view action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0936?
CVE-2008-0936 is classified as a high severity vulnerability due to its potential for remote exploitation and arbitrary SQL command execution.
How do I fix CVE-2008-0936?
To fix CVE-2008-0936, ensure you upgrade the Prayer List module to the latest version that contains security patches.
What software is affected by CVE-2008-0936?
CVE-2008-0936 affects the Prayer List module for XOOPS version 1.04.
What type of vulnerability is CVE-2008-0936?
CVE-2008-0936 is an SQL injection vulnerability that allows attackers to manipulate database queries.
Can CVE-2008-0936 lead to data breaches?
Yes, CVE-2008-0936 can lead to data breaches as it allows remote attackers to execute arbitrary SQL commands, potentially exposing sensitive data.