CVE-2008-5768: SQL Injection
Published Dec 30, 2008
·Updated
SQL injection vulnerability in print.php in the AM Events (aka Amevents) module 0.22 for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected Software
4 affected components
Sirium Am Events Module=0.22
Xoops Xoops
All of the following
Sirium Am Events Module=0.22
Xoops Xoops
Event History
Dec 30, 2008
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Data Sourced
08:30 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·08:30 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2008-5768?
CVE-2008-5768 is classified as a critical vulnerability due to its potential for remote SQL injection attacks.
2
How do I fix CVE-2008-5768?
To fix CVE-2008-5768, update the AM Events module to a version that is not vulnerable to SQL injection.
3
Which applications are affected by CVE-2008-5768?
CVE-2008-5768 affects the AM Events module version 0.22 for XOOPS.
4
What type of vulnerability is CVE-2008-5768?
CVE-2008-5768 is an SQL injection vulnerability allowing attackers to execute arbitrary SQL commands.
5
Can CVE-2008-5768 lead to data breaches?
Yes, CVE-2008-5768 can potentially lead to data breaches due to unauthorized access to the database.