CVE-2008-6013

Multiple SQL injection vulnerabilities in Freeway before 1.4.3.210 allow remote attackers to execute arbitrary SQL commands via unspecified vectors involving the (1) advanced search result and (2) service resource pages.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:openfreeway:freeway:*:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.0.25:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.0.25:public_beta:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.0.59:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.0.060:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.1.1.76:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.1.1.80:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.1.1.81:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.2.0.113:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3.0.142:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3.1.142:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3.1.147:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3.2.154:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3.2.160:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.3.2.160:joomla_beta:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.4:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.4.0.171:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.4.1:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.4.1.171:*:*:*:*:*:*:*
cpe:2.3:a:openfreeway:freeway:1.4.1.197:*:*:*:*:*:*:*

History

No history.

Information

Published : 2009-01-30 18:30

Updated : 2024-02-04 17:33


NVD link : CVE-2008-6013

Mitre link : CVE-2008-6013

CVE.ORG link : CVE-2008-6013


JSON object : View

Products Affected

openfreeway

  • freeway
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')