First published: Fri Nov 14 2008(Updated: )
SQL injection vulnerability in index.php in the Freshlinks 1.0 RC1 module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the linkid parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Php-fusion Freshlinks Module | =1.0-rc1 | |
Jenkins |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-5074 is classified as a high severity vulnerability due to its potential for remote SQL injection attacks.
To fix CVE-2008-5074, update your Freshlinks module to a version that patches this SQL injection vulnerability.
CVE-2008-5074 specifically affects Freshlinks module version 1.0 RC1 for PHP-Fusion.
Yes, CVE-2008-5074 can be exploited remotely, allowing attackers to execute arbitrary SQL commands.
Exploiting CVE-2008-5074 can lead to unauthorized access to the database and manipulation of sensitive data.