Back to search
CVE-2008-2231
Published: Jun 5, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
SQL injection vulnerability in Slashdot Like Automated Storytelling Homepage (Slash) (aka Slashcode) R_2_5_0_94 and earlier allows remote attackers to execute SQL commands and read table information via the id parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://www.slashcode.com/article.pl?sid=08/01/07/2314232
x_refsource_CONFIRM
31691
third-party-advisory
x_refsource_SECUNIA
1020206
vdb-entry
x_refsource_SECTRACK
[oss-security] 20080604 Re: CVE id request: slash
mailing-list
x_refsource_MLIST
[oss-security] 20080604 CVE id request: slash
mailing-list
x_refsource_MLIST
slash-id-sql-injection(42880)
vdb-entry
x_refsource_XF
3923
third-party-advisory
x_refsource_SREASON
http://www.slashcode.com/article.pl?sid=08/01/04/1950244&tid=4
x_refsource_CONFIRM
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=484499
x_refsource_CONFIRM
DSA-1633
vendor-advisory
x_refsource_DEBIAN
30551
third-party-advisory
x_refsource_SECUNIA
29548
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now