TROYANOSYVIRUS
Voltar para CVEs

CVE-2008-2231

N/A

Descricao

SQL injection vulnerability in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) R_2_5_0_94 and earlier allows remote attackers to execute SQL commands and read table information via the id parameter.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado6/5/2008
Ultima modificacao4/9/2025
Fontenvd
Avistamentos honeypot0

Produtos afetados

slashcode.com:slash

Fraquezas (CWE)

CWE-89

Referencias

http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=484499(af854a3a-2127-422b-91ae-364da2661108)
http://marc.info/?l=oss-security&m=121258731028005&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://marc.info/?l=oss-security&m=121260265427728&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/30551(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/31691(af854a3a-2127-422b-91ae-364da2661108)
http://securityreason.com/securityalert/3923(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2008/dsa-1633(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/29548(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id?1020206(af854a3a-2127-422b-91ae-364da2661108)
http://www.slashcode.com/article.pl?sid=08/01/07/2314232(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.