Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-4043

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2008-4043
Last Modified 29 Jan 2009 12:00:00
Published 11 Sep 2008 05:06:47
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-4043

Summary

Multiple SQL injection vulnerabilities in AJ Square AJ HYIP Acme allow remote attackers to execute arbitrary SQL commands via the artid parameter to (1) acme/article/comment.php and (2) prime/article/comment.php.

Vulnerable Systems

Application

  • Aj Square Aj Hyip Acme


References

XF - ajhyipacme-comment-sql-injection(44803)

BID - 30974

MILW0RM - 6350

SREASON - 4240


Last Updated: 27 May 2016 10:48:22