CVE-2008-3256

EUVD-2008-3244
SQL injection vulnerability in folder.php in Siteframe CMS 3.2.3 and earlier, and Siteframe Beaumont 5.0.5 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 61%
Affected Products (NVD)
VendorProductVersion
siteframesiteframe_beaumont
𝑥
≤ 5.0.5
siteframesiteframe_beaumont
5.0.1
siteframesiteframe_beaumont
5.0.1a:a
siteframesiteframe_beaumont
5.0.2
siteframesiteframe_cms
𝑥
≤ 3.2.3
siteframesiteframe_cms
2.0.2
siteframesiteframe_cms
2.0.2\+0005
siteframesiteframe_cms
2.1\+0001
siteframesiteframe_cms
2.2.0
siteframesiteframe_cms
2.2.1
siteframesiteframe_cms
2.2.2
siteframesiteframe_cms
2.3
siteframesiteframe_cms
2.3.2
siteframesiteframe_cms
2.4
siteframesiteframe_cms
3.0.1
siteframesiteframe_cms
3.0.2
siteframesiteframe_cms
3.1.0
siteframesiteframe_cms
3.2.1
siteframesiteframe_cms
3.2.2
𝑥
= Vulnerable software versions