SQL Injection Vulnerabilities in PHP-Fusion by PHP-Fusion
CVE-2014-8596

Currently unrated

Key Information:

Vendor

PHP-fusion

Vendor
CVE Published:
17 November 2014

What is CVE-2014-8596?

PHP-Fusion versions prior to 7.02.07 contain multiple SQL injection vulnerabilities that enable remote authenticated users to manipulate database queries. Specifically, attackers can exploit the 'submit_id' parameter in the submissions administrative interface or the 'status' parameter in the members administrative interface to execute arbitrary SQL commands. This can lead to unauthorized data access and manipulation, emphasizing the need for updated security measures in web applications.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.