CVE-2004-0269
PHP-Nuke 5.x/6.x Web_Links Module - SQL Injection
Severity Score
6.4
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
3
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
SQL injection vulnerability in PHP-Nuke 6.9 and earlier, and possibly 7.x, allows remote attackers to inject arbitrary SQL code and gain sensitive information via (1) the category variable in the Search module or (2) the admin variable in the Web_Links module.
Vulnerabilidad de inyección de SQL en PHP-Nuke 6.9 y anteriores, y posiblemente 6.x, permite a atacantes remotos inyectar código SQL de su elección y obtener información sensible mediante (1) la variable category en el módulo Search. o (2) la variable admin en el módulo Web_Links.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2003-05-12 First Exploit
- 2004-03-17 CVE Reserved
- 2004-03-18 CVE Published
- 2024-08-08 CVE Updated
- 2024-08-27 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (6)
URL | Tag | Source |
---|---|---|
http://marc.info/?l=bugtraq&m=107643348117646&w=2 | Mailing List | |
http://www.scan-associates.net/papers/phpnuke69.txt | X_refsource_misc | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/15115 | Vdb Entry |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/22589 | 2003-05-12 | |
https://www.exploit-db.com/exploits/23680 | 2003-12-23 | |
http://www.securityfocus.com/bid/9630 | 2024-08-08 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 1.0 Search vendor "Francisco Burzi" for product "Php-nuke" and version "1.0" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 2.5 Search vendor "Francisco Burzi" for product "Php-nuke" and version "2.5" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 3.0 Search vendor "Francisco Burzi" for product "Php-nuke" and version "3.0" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 4.0 Search vendor "Francisco Burzi" for product "Php-nuke" and version "4.0" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 4.3 Search vendor "Francisco Burzi" for product "Php-nuke" and version "4.3" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 4.4 Search vendor "Francisco Burzi" for product "Php-nuke" and version "4.4" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 4.4.1a Search vendor "Francisco Burzi" for product "Php-nuke" and version "4.4.1a" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.0 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.0" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.0.1 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.0.1" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.1 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.1" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.2 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.2" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.2a Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.2a" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.3.1 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.3.1" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.4 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.4" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.5 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.5" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 5.6 Search vendor "Francisco Burzi" for product "Php-nuke" and version "5.6" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.0 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.0" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.5 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.5" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.5_beta1 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.5_beta1" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.5_final Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.5_final" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.5_rc1 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.5_rc1" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.5_rc2 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.5_rc2" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.5_rc3 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.5_rc3" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.6 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.6" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.7 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.7" | - |
Affected
| ||||||
Francisco Burzi Search vendor "Francisco Burzi" | Php-nuke Search vendor "Francisco Burzi" for product "Php-nuke" | 6.9 Search vendor "Francisco Burzi" for product "Php-nuke" and version "6.9" | - |
Affected
|