First published: Mon Oct 27 2008(Updated: )
SQL injection vulnerability in EditUrl.php in AJ Square RSS Reader allows remote attackers to execute arbitrary SQL commands via the url parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Rssreader |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4753 has a severity rating that indicates a high risk of SQL injection attacks due to insufficient input validation.
To fix CVE-2008-4753, update the AJ Square RSS Reader to the latest version or implement input validation and parameterized queries.
CVE-2008-4753 allows remote attackers to execute arbitrary SQL commands, potentially compromising the database.
Yes, CVE-2008-4753 is exploitable by remote attackers through the manipulation of the url parameter.
CVE-2008-4753 affects AJ Square RSS Reader, allowing vulnerabilities in its EditUrl.php script.