CVE-2008-1486
24.03.2008, 23:44
SQL injection vulnerability in Phorum before 5.2.6, when mysql_use_ft is disabled, allows remote attackers to execute arbitrary SQL commands via the non-fulltext search.
Vendor | Product | Version |
---|---|---|
phorum | phorum | 𝑥 ≤ 5.2.5 |
phorum | phorum | 5.0.0_alpha:_alpha |
phorum | phorum | 5.0.1_alpha:_alpha |
phorum | phorum | 5.0.2_alpha:_alpha |
phorum | phorum | 5.0.3_beta:_beta |
phorum | phorum | 5.0.4_beta:_beta |
phorum | phorum | 5.0.4a_beta:a_beta |
phorum | phorum | 5.0.5_beta:_beta |
phorum | phorum | 5.0.6_beta:_beta |
phorum | phorum | 5.0.7_beta:_beta |
phorum | phorum | 5.0.7a_beta:a_beta |
phorum | phorum | 5.0.8_rc:_rc |
phorum | phorum | 5.0.9 |
phorum | phorum | 5.0.10 |
phorum | phorum | 5.0.11 |
phorum | phorum | 5.0.12 |
phorum | phorum | 5.0.13 |
phorum | phorum | 5.0.13a:a |
phorum | phorum | 5.0.14 |
phorum | phorum | 5.0.14a:a |
phorum | phorum | 5.0.15 |
phorum | phorum | 5.0.15a:a |
phorum | phorum | 5.0.16 |
phorum | phorum | 5.0.17 |
phorum | phorum | 5.0.17a:a |
phorum | phorum | 5.0.18 |
phorum | phorum | 5.0.19 |
phorum | phorum | 5.0.20 |
phorum | phorum | 5.1.13 |
phorum | phorum | 5.1.14 |
phorum | phorum | 5.1.17 |
phorum | phorum | 5.1.18 |
phorum | phorum | 5.1.20 |
phorum | phorum | 5.1.21 |
phorum | phorum | 5.1.25 |
phorum | phorum | 5.2 |
phorum | phorum | 5.2.1 |
phorum | phorum | 5.2.2:beta |
phorum | phorum | 5.2.3:rc1 |
phorum | phorum | 5.2.4:rc2 |
𝑥
= Vulnerable software versions
References