Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-3952

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2008-3952
Last Modified 29 Jan 2009 01:54:53
Published 10 Sep 2008 09:13:47
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-3952

Summary

SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via the idcat parameter.

Vulnerable Systems

Application

  • Editeurscripts Esfaq 2.0


References

XF - esfaq-questions-sql-injection(44957)

BID - 31036

MILW0RM - 6383

SREASON - 4231


Last Updated: 27 May 2016 10:48:21