CVE-2008-5628: SQL Injection
Published Dec 17, 2008
·Updated
SQL injection vulnerability in index.php in CMS little 0.0.1 allows remote attackers to execute arbitrary SQL commands via the term parameter.
Affected Software
1 affected component
Little Cms Little CMS=0.0.1
Event History
Dec 17, 2008
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
via NVD·05:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-5628?
CVE-2008-5628 is rated as high severity due to the potential for remote code execution via SQL injection.
2
How do I fix CVE-2008-5628?
To fix CVE-2008-5628, upgrade to a patched version of the CMS that addresses the SQL injection vulnerability.
3
What are the potential impacts of CVE-2008-5628?
The impacts of CVE-2008-5628 include unauthorized access to database information and the ability to execute arbitrary SQL commands.
4
Is CVE-2008-5628 easy to exploit?
CVE-2008-5628 can be easily exploited by attackers who can manipulate the 'term' parameter in the URL.
5
What versions of CMS Little are affected by CVE-2008-5628?
CVE-2008-5628 affects version 0.0.1 of CMS Little exclusively.