Vulnerability Description
Multiple SQL injection vulnerabilities in the Search module in Php-Nuke allow remote attackers to execute arbitrary SQL via the (1) min or (2) categ parameters.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Francisco Burzi | Php-Nuke | 8.0_final |
References
- http://marc.info/?l=bugtraq&m=109026609504767&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16737
- http://marc.info/?l=bugtraq&m=109026609504767&w=2
- https://exchange.xforce.ibmcloud.com/vulnerabilities/16737
FAQ
What is CVE-2004-0738?
CVE-2004-0738 is a vulnerability with a CVSS score of 7.5 (HIGH). Multiple SQL injection vulnerabilities in the Search module in Php-Nuke allow remote attackers to execute arbitrary SQL via the (1) min or (2) categ parameters.
How severe is CVE-2004-0738?
CVE-2004-0738 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2004-0738?
Check the references section above for vendor advisories and patch information. Affected products include: Francisco Burzi Php-Nuke.