CVE

Id
8034  
CVE No.
CVE-2003-1210  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in the Downloads module for PHP-Nuke 5.x through 6.5 allow remote attackers to execute arbitrary SQL commands via the (1) lid parameter to the getit function or the (2) min parameter to the search function.  
Phase
Assigned (20050519)  
Votes
None (candidate not yet proposed)  
Comments