Vulnerabilities > Francisco Burzi > PHP Nuke > 6.5.rc3

DATE CVE VULNERABILITY TITLE RISK
2003-12-31 CVE-2003-1210 Downloads Module SQL Injection vulnerability in PHP-Nuke
Multiple SQL injection vulnerabilities in the Downloads module for PHP-Nuke 5.x through 6.5 allow remote attackers to execute arbitrary SQL commands via the (1) lid parameter to the getit function or the (2) min parameter to the search function.
network
low complexity
francisco-burzi
7.5