7.5
CVSSv2

CVE-2008-4148

Published: 24/09/2008 Updated: 08/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the Mailhandler module 5.x prior to 5.x-1.4 and 6.x prior to 6.x-1.4, a module for Drupal, allows remote malicious users to execute arbitrary SQL commands via unspecified vectors, related to composing queries without using the Drupal database API.

Vulnerable Product Search on Vulmon Subscribe to Product

drupal mailhandler

drupal mailhandler 6.x-1.2

drupal mailhandler 5.x-1.0

drupal mailhandler 5.x-1.x-dev

drupal mailhandler 5.x-1.2

drupal mailhandler 5.x-1.1

drupal mailhandler 6.x-1.x-dev

drupal mailhandler 6.x-1.1

drupal mailhandler 6.x-1.0