CVE-2008-1314: SQL Injection
SQL injection vulnerability in the Johannes Hass gaestebuch 2.2 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit action to modules.php.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-1314?
CVE-2008-1314 is considered a high severity vulnerability due to the potential for remote attackers to execute arbitrary SQL commands.
How do I fix CVE-2008-1314?
To fix CVE-2008-1314, update to a newer version of the Johannes Hass Gaestebuch module that addresses this SQL injection vulnerability.
What software is affected by CVE-2008-1314?
CVE-2008-1314 specifically affects the Johannes Hass Gaestebuch module version 2.2 for PHP-Nuke.
How does CVE-2008-1314 exploit SQL injection?
CVE-2008-1314 exploits SQL injection through the id parameter in an edit action to modules.php, allowing execution of malicious SQL commands.
What can attackers achieve with CVE-2008-1314?
Attackers exploiting CVE-2008-1314 can manipulate the database, potentially leading to unauthorized data access or modification.