CVE-2008-6120
Published Feb 11, 2009
Last updated 7 years ago
Overview
- Description
- SQL injection vulnerability in profile_comments.php in SocialEngine (SE) 2.7 and earlier allows remote attackers to execute arbitrary SQL commands via the comment_secure parameter.
- Source
- cve@mitre.org
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-89
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:socialengine:socialengine:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CC5320F9-263A-4024-A727-E306D684E2DE", "versionEndIncluding": "2.7" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BD56A40D-13BB-4241-9964-5175BE2E576F" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E23A1147-BC44-459D-A69D-6DD6DDEFB7E5" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "48916655-CC40-4538-B062-416DC88506D8" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "19F8896D-AC27-4C0D-B22C-DBB3C0D18DBA" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3A81D8CB-0FB8-46E9-A199-78A1FDE21D4E" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2520FAB0-7DA5-4BE9-AF72-BBFD2636C6FD" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:2.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C830CF2B-253A-49C7-B107-81503516A3B2" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:2.0:bta_online:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5F3AFA5-452F-4480-A538-56DFFF9DB987" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "51F75C06-691C-4EB6-8A23-DF46FDCC7360" }, { "criteria": "cpe:2.3:a:socialengine:socialengine:2.4:se:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1DD724C-FE53-48FD-8661-A09518E4EADF" } ], "operator": "OR" } ] } ]