299,038
Total vulnerabilities in the database
Multiple SQL injection vulnerabilities in the Downloads module for PHP-Nuke 5.x through 6.5 allow remote attackers to execute arbitrary SQL commands via the (1) lid parameter to the getit function or the (2) min parameter to the search function.
| Software | From | Fixed in |
|---|---|---|
| francisco_burzi / php-nuke | 6.5_beta1 | 6.5_beta1.x |
| francisco_burzi / php-nuke | 6.5_rc2 | 6.5_rc2.x |
| francisco_burzi / php-nuke | 6.5_rc3 | 6.5_rc3.x |
| francisco_burzi / php-nuke | - | 6.5.x |
| francisco_burzi / php-nuke | 6.5_final | 6.5_final.x |
| francisco_burzi / php-nuke | 6.5_rc1 | 6.5_rc1.x |