CVE

Id
34274  
CVE No.
CVE-2008-4157  
Status
Candidate  
Description
SQL injection vulnerability in groups.php in Vastal I-Tech phpVID 1.1 allows remote attackers to execute arbitrary SQL commands via the cat parameter, a different vector than CVE-2007-3610. NOTE: it was later reported that 1.2.3 is also affected.  
Phase
Assigned (20080922)  
Votes
None (candidate not yet proposed)  
Comments