Vulnerability Description
SQL injection vulnerability in the sections (Section) module in RunCMS allows remote attackers to execute arbitrary SQL commands via the artid parameter in a viewarticle action.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Runcms | Runcms | All versions |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/28378Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41377
- https://www.exploit-db.com/exploits/5285
- http://www.securityfocus.com/bid/28378Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41377
- https://www.exploit-db.com/exploits/5285
FAQ
What is CVE-2008-1462?
CVE-2008-1462 is a vulnerability with a CVSS score of 6.8 (MEDIUM). SQL injection vulnerability in the sections (Section) module in RunCMS allows remote attackers to execute arbitrary SQL commands via the artid parameter in a viewarticle action.
How severe is CVE-2008-1462?
CVE-2008-1462 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-1462?
Check the references section above for vendor advisories and patch information. Affected products include: Runcms Runcms.