CVE-2008-6114: SQL Injection
SQL injection vulnerability in productdetails.php in the Mytipper Zogo-shop 1.15.4 plugin for e107 allows remote attackers to execute arbitrary SQL commands via the product parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6114?
CVE-2008-6114 is considered a high severity SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands.
How do I fix CVE-2008-6114?
To fix CVE-2008-6114, update the Mytipper Zogo-shop plugin to a version that has resolved the SQL injection issue.
What software is affected by CVE-2008-6114?
CVE-2008-6114 specifically affects the Mytipper Zogo-shop plugin version 1.15.4 for e107.
What type of vulnerability is CVE-2008-6114?
CVE-2008-6114 is an SQL injection vulnerability that can be exploited through the product parameter in the product_details.php file.
Can CVE-2008-6114 lead to data loss?
Yes, CVE-2008-6114 can lead to data loss or unauthorized access to sensitive information due to arbitrary SQL command execution.