CVE-2008-3223
18.07.2008, 16:41
SQL injection vulnerability in the Schema API in Drupal 6.x before 6.3 allows remote attackers to execute arbitrary SQL commands via vectors related to "an inappropriate placeholder for 'numeric' fields."
| Vendor | Product | Version |
|---|---|---|
| drupal | drupal | 6.0 ≤ 𝑥 < 6.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References