PT-2007-6849 · Php · Phphelpdesk
Joseph
·
Published
2007-11-10
·
Updated
2018-10-15
·
CVE-2007-5916
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
phphelpdesk version 0.6.16
Description
A SQL injection issue exists in the login page, allowing remote attackers to execute arbitrary SQL commands. This is related to the login procedures, though specific parameters are not specified.
Recommendations
For phphelpdesk version 0.6.16, update to a newer version that contains a fix for this issue, as using outdated software can pose significant security risks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
SQL injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Phphelpdesk