CVE-2007-6391
HighPublished
SQL injection vulnerability in patch/comments.php in SH-News 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
- Published
- Dec 17, 2007
- Updated
- Aug 7, 2024
- Assigning CNA
- mitre
- Evidence observed
- Dec 9, 2007
Primary CVSS
7.5/ 10High