CVE

Id
25317  
CVE No.
CVE-2007-1960  
Status
Candidate  
Description
SQL injection vulnerability in visit.php in the Rha7 Downloads (rha7downloads) 1.0 module for XOOPS, and possibly other versions up to 1.10, allows remote attackers to execute arbitrary SQL commands via the lid parameter.  
Phase
Assigned (20070410)  
Votes
None (candidate not yet proposed)  
Comments