First published: Tue May 06 2008(Updated: )
SQL injection vulnerability in article.php in the Article module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Xoops Article Module |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-2094 has a medium severity due to its potential for SQL injection attacks.
To fix CVE-2008-2094, update the XOOPS Article module to a patched version that mitigates SQL injection vulnerabilities.
CVE-2008-2094 is classified as an SQL injection vulnerability.
The vulnerability in CVE-2008-2094 affects the 'id' parameter in article.php.
Any remote attacker can exploit CVE-2008-2094 if the affected XOOPS Article module version is in use.