First published: Thu Oct 09 2008(Updated: )
SQL injection vulnerability in thisraidprogress.php in the World of Warcraft tracker infusion (raidtracker_panel) module 2.0 for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the INFO_RAID_ID parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php-fusion World Of Warcraft Tracker Infusion Module | =2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4521 is classified as a high severity vulnerability due to its potential for executing arbitrary SQL commands.
To fix CVE-2008-4521, update the World of Warcraft tracker infusion module to a version that addresses this SQL injection vulnerability.
The impact of CVE-2008-4521 allows remote attackers to compromise the database of the affected PHP-Fusion installation.
CVE-2008-4521 affects the World of Warcraft tracker infusion module version 2.0 for PHP-Fusion.
CVE-2008-4521 is an SQL injection vulnerability that allows unauthorized SQL commands to be executed.