Vulnerability Description
SQL injection vulnerability in ugroups.php in PozScripts TubeGuru Video Sharing Script allows remote attackers to execute arbitrary SQL commands via the UID parameter.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Pozscripts | Tubeguru Video Sharing Script | All versions |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/31276Vendor Advisory
- http://securityreason.com/securityalert/4152
- http://www.securityfocus.com/bid/30455Exploit
- http://www.vupen.com/english/advisories/2008/2252/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44113
- https://www.exploit-db.com/exploits/6170
- http://secunia.com/advisories/31276Vendor Advisory
- http://securityreason.com/securityalert/4152
- http://www.securityfocus.com/bid/30455Exploit
- http://www.vupen.com/english/advisories/2008/2252/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/44113
- https://www.exploit-db.com/exploits/6170
FAQ
What is CVE-2008-3674?
CVE-2008-3674 is a vulnerability with a CVSS score of 7.5 (HIGH). SQL injection vulnerability in ugroups.php in PozScripts TubeGuru Video Sharing Script allows remote attackers to execute arbitrary SQL commands via the UID parameter.
How severe is CVE-2008-3674?
CVE-2008-3674 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-3674?
Check the references section above for vendor advisories and patch information. Affected products include: Pozscripts Tubeguru Video Sharing Script.