CVE-2008-3954

Publication date

2008-09-09 13:09:00

Family

mitre

State

PUBLISHED

Description

SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange allows remote attackers to execute arbitrary SQL commands via the cat parameter in a showcat action.