CVE-2008-3554: SQL Injection
Published Aug 8, 2008
·Updated
SQL injection vulnerability in index.php in Discuz! 6.0.1 allows remote attackers to execute arbitrary SQL commands via the searchid parameter in a search action.
Affected Software
1 affected component
Comsenz Discuz=6.0.1
Event History
Aug 8, 2008
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-3554?
CVE-2008-3554 is classified as a high severity SQL injection vulnerability.
2
How do I fix CVE-2008-3554?
Fix CVE-2008-3554 by updating to the latest version of Discuz! that addresses this SQL injection flaw.
3
What are the potential impacts of CVE-2008-3554?
Exploitation of CVE-2008-3554 can lead to unauthorized access to the database and potential data compromise.
4
Who is affected by CVE-2008-3554?
CVE-2008-3554 affects users of Discuz! version 6.0.1.
5
Can CVE-2008-3554 be exploited remotely?
Yes, CVE-2008-3554 can be exploited remotely through crafted HTTP requests.