Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Metropolis

#35569of 53,622
7.5Total CVSS
Vulnerabilities · 1
PT-2011-1860
7.5
2011-10-09
Nuked Klan · Nuked-Klan Partenaires Module · CVE-2010-4925
**Name of the Vulnerable Software and Affected Versions** Nuked-Klan Partenaires module version 1.5 **Description** The issue allows remote attackers to execute arbitrary SQL commands. This is achieved by exploiting the `id` parameter in the clic.php file. **Recommendations** For Nuked-Klan Partenaires module version 1.5, avoid using the `id` parameter in the vulnerable clic.php file until a fix is available. Consider restricting access to the clic.php file to minimize the risk of exploitation.