Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-6016

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2008-6016
Last Modified 17 Feb 2009 01:56:15
Published 30 Jan 2009 01:30:05
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-6016

Summary

SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2008-3952. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Systems

Application

  • Editeurscripts Esfaq 2.0


References

XF - esfaq-cid-sql-injection(48535)

SECUNIA - 31721


Last Updated: 27 May 2016 10:49:02