6.8
CVSSv2

CVE-2008-1486

Published: 24/03/2008 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in Phorum prior to 5.2.6, when mysql_use_ft is disabled, allows remote malicious users to execute arbitrary SQL commands via the non-fulltext search.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phorum phorum 5.0.15

phorum phorum 5.0.1_alpha

phorum phorum 5.2.2

phorum phorum 5.0.13a

phorum phorum 5.0.15a

phorum phorum 5.0.2_alpha

phorum phorum 5.0.5_beta

phorum phorum 5.0.19

phorum phorum 5.1.13

phorum phorum 5.0.7a_beta

phorum phorum 5.0.17

phorum phorum 5.0.17a

phorum phorum 5.1.25

phorum phorum 5.0.18

phorum phorum 5.0.4a_beta

phorum phorum 5.1.18

phorum phorum 5.2.4

phorum phorum 5.2.3

phorum phorum 5.0.12

phorum phorum

phorum phorum 5.0.20

phorum phorum 5.1.20

phorum phorum 5.2

phorum phorum 5.1.21

phorum phorum 5.0.0_alpha

phorum phorum 5.0.16

phorum phorum 5.0.10

phorum phorum 5.0.11

phorum phorum 5.0.14a

phorum phorum 5.0.9

phorum phorum 5.0.14

phorum phorum 5.0.7_beta

phorum phorum 5.1.14

phorum phorum 5.0.6_beta

phorum phorum 5.1.17

phorum phorum 5.0.3_beta

phorum phorum 5.0.4_beta

phorum phorum 5.0.13

phorum phorum 5.2.1

phorum phorum 5.0.8_rc