← Zuruck zu CVEs
CVE-2008-7091
N/ABeschreibung
Multiple SQL injection vulnerabilities in Pligg 9.9 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to vote.php, which is not properly handled in libs/link.php; (2) id parameter to trackback.php; (3) an unspecified parameter to submit.php; (4) requestTitle variable in a query to story.php; (5) requestID and (6) requestTitle variables in recommend.php; (7) categoryID parameter to cloud.php; (8) title parameter to out.php; (9) username parameter to login.php; (10) id parameter to cvote.php; and (11) commentid parameter to edit.php.
CVE Details
CVSS v3.1 BewertungN/A
Veroffentlicht8/26/2009
Zuletzt geandert4/23/2026
Quellenvd
Honeypot-Sichtungen0
Betroffene Produkte
pligg:pligg_cms
Schwachen (CWE)
CWE-89
Referenzen
http://www.osvdb.org/50189(cve@mitre.org)
http://www.osvdb.org/50190(cve@mitre.org)
http://www.osvdb.org/50191(cve@mitre.org)
http://www.osvdb.org/50192(cve@mitre.org)
http://www.osvdb.org/50193(cve@mitre.org)
http://www.osvdb.org/50194(cve@mitre.org)
http://www.osvdb.org/50195(cve@mitre.org)
http://www.osvdb.org/50196(cve@mitre.org)
http://www.osvdb.org/50197(cve@mitre.org)
http://www.osvdb.org/50198(cve@mitre.org)
http://www.securityfocus.com/archive/1/494987/100/0/threaded(cve@mitre.org)
http://www.securityfocus.com/bid/30458(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44193(cve@mitre.org)
https://www.exploit-db.com/exploits/6173(cve@mitre.org)
http://www.gulftech.org/?node=research&article_id=00120-07312008(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50189(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50190(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50191(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50192(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50193(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50194(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50195(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50196(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50197(af854a3a-2127-422b-91ae-364da2661108)
http://www.osvdb.org/50198(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/archive/1/494987/100/0/threaded(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/30458(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44193(af854a3a-2127-422b-91ae-364da2661108)
https://www.exploit-db.com/exploits/6173(af854a3a-2127-422b-91ae-364da2661108)
IOC Korrelationen
Keine Korrelationen erfasst
This product uses data from the NVD API but is not endorsed or certified by the NVD.