Lucene search

K
cveMitreCVE-2008-6851
HistoryJul 07, 2009 - 7:00 p.m.

CVE-2008-6851

2009-07-0719:00:00
CWE-89
mitre
web.nvd.nist.gov
22
cve-2008-6851
sql injection
php link directory
phpld 3.3
remote code execution
vulnerability
nvd

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.8

Confidence

Low

EPSS

0.001

Percentile

38.6%

SQL injection vulnerability in page.php in PHP Link Directory (phpLD) 3.3, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the name parameter.

Affected configurations

Nvd
Node
php_link_directoryphp_link_directoryMatch3.3
VendorProductVersionCPE
php_link_directoryphp_link_directory3.3cpe:2.3:a:php_link_directory:php_link_directory:3.3:*:*:*:*:*:*:*

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.8

Confidence

Low

EPSS

0.001

Percentile

38.6%

Related for CVE-2008-6851