Lucene search

K
cveMitreCVE-2008-2231
HistoryJun 05, 2008 - 8:32 p.m.

CVE-2008-2231

2008-06-0520:32:00
CWE-89
mitre
web.nvd.nist.gov
34
cve-2008-2231
sql injection
slashdot
slashcode
r_2_5_0_94
vulnerability
remote attack

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.005

Percentile

76.2%

SQL injection vulnerability in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) R_2_5_0_94 and earlier allows remote attackers to execute SQL commands and read table information via the id parameter.

Affected configurations

Nvd
Node
slashcode.comslashRanger_2_5_0_94
VendorProductVersionCPE
slashcode.comslash*cpe:2.3:a:slashcode.com:slash:*:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.005

Percentile

76.2%