Vulnerabilities > Netref > Netref > 4.0

DATE CVE VULNERABILITY TITLE RISK
2008-12-15 CVE-2008-5561 SQL Injection vulnerability in Netref 4.0
SQL injection vulnerability in Netref 4.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) fiche_product.php and (2) presentation.php.
network
low complexity
netref CWE-89
7.5