SQL Injection Vulnerability in TrailScout Module for Drupal
CVE-2008-2850

Currently unrated

Key Information:

Vendor
Drupal
Vendor
CVE Published:
25 June 2008

Summary

The TrailScout module for Drupal prior to version 5.x-1.4 is susceptible to a SQL injection vulnerability. This flaw enables remote attackers to manipulate SQL queries by exploiting unspecified cookies, leading to the execution of arbitrary SQL commands. The issue is associated with improper utilization of the Drupal database API, which can result in unauthorized access and potential data breaches.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.