First published: Wed Feb 25 2009(Updated: )
SQL injection vulnerability in admin/index.php in Dragan Mitic Apoll 0.7 beta and 0.7.5 allows remote attackers to execute arbitrary SQL command via the user parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hewlett Packard Enterprise (HPE) Apollo | =0.7-beta | |
Hewlett Packard Enterprise (HPE) Apollo | =0.7.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-6270 has been classified as medium severity due to its potential for remote SQL injection attacks.
To fix CVE-2008-6270, users should upgrade to a patched version of Dragan Mitic Apoll that addresses the SQL injection vulnerability.
CVE-2008-6270 can facilitate arbitrary SQL command execution, potentially allowing attackers to manipulate the database.
CVE-2008-6270 affects Dragan Mitic Apoll versions 0.7 beta and 0.7.5.
The vendor related to CVE-2008-6270 is Dragan Mitic, specifically associated with HPE Apollo software.