CVE-2008-3374

SQL injection vulnerability in ajax.php in Gregarius 0.5.4 and earlier allows remote attackers to execute arbitrary SQL commands via the rsargs array parameter in an __exp__getFeedContent action.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 63%
VendorProductVersion
gregariusgregarius
𝑥
≤ 0.5.4
gregariusgregarius
0.2.4
gregariusgregarius
0.3.0
gregariusgregarius
0.3.2
gregariusgregarius
0.3.4
gregariusgregarius
0.3.6
gregariusgregarius
0.3.8
gregariusgregarius
0.4.0
gregariusgregarius
0.4.2
gregariusgregarius
0.5.0
gregariusgregarius
0.5.2
𝑥
= Vulnerable software versions