CVE-2008-1053

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
27/02/2008
Last modified:
29/09/2017

Description

Multiple SQL injection vulnerabilities in the Kose_Yazilari module for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the artid parameter in a (1) viewarticle or (2) printpage action to modules.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:phpnuke:kose_yazilari_module:*:*:*:*:*:*:*:*