SQL injection vulnerability in Koobi CMS 4.2.3 through 4.3.0 allows remote attackers to execute arbitrary SQL commands via the categ parameter in a links action to index.php, a different vector than CVE-2008-1122.
Software | From | Fixed in |
---|---|---|
koobi / koobi_cms | 4.2.3 | 4.2.3.x |
koobi / koobi_cms | 4.2.4 | 4.2.4.x |
koobi / koobi_cms | 4.2.5 | 4.2.5.x |
koobi / koobi_cms | 4.2.6 | 4.2.6.x |
koobi / koobi_cms | 4.2.7 | 4.2.7.x |
koobi / koobi_cms | 4.2.8 | 4.2.8.x |
koobi / koobi_cms | 4.2.9 | 4.2.9.x |
koobi / koobi_cms | 4.3.0 | 4.3.0.x |