First published: Thu Aug 13 2009(Updated: )
Multiple SQL injection vulnerabilities in submit.php in Pligg CMS 9.9.5 allow remote attackers to execute arbitrary SQL commands via the (1) category and (2) id parameters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Pligg CMS | =9.9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-6968 has a high severity due to its potential to allow arbitrary SQL command execution.
To fix CVE-2008-6968, upgrade Pligg CMS to a version that is not affected by these SQL injection vulnerabilities.
CVE-2008-6968 affects the submit.php file in Pligg CMS version 9.9.5.
Yes, CVE-2008-6968 can lead to data breaches by allowing attackers to manipulate and access sensitive data in the database.
CVE-2008-6968 is specifically vulnerable to SQL injection through the 'category' and 'id' parameters.