Vulnerabilities > Nuked Klan > High

DATE CVE VULNERABILITY TITLE RISK
2011-10-09 CVE-2010-4925 SQL Injection vulnerability in Nuked-Klan Partenaires Module 1.5
SQL injection vulnerability in clic.php in the Partenaires module 1.5 for Nuked-Klan allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
nuked-klan CWE-89
7.5
2007-05-09 CVE-2007-2556 SQL Injection vulnerability in Nuked-Klan 1.7.6
SQL injection vulnerability in Nuked-klaN 1.7.6 allows remote attackers to execute arbitrary SQL commands via the X-Forwarded-For (X_FORWARDED_FOR) HTTP header, as demonstrated by a request to the /nk/ URI.
network
low complexity
nuked-klan
7.5
2005-10-26 CVE-2005-3305 SQL Injection vulnerability in Nuked-Klan 1.7
Multiple SQL injection vulnerabilities in Nuked Klan 1.7 allow remote attackers to execute arbitrary SQL commands via the (1) forum_id or (2) thread_id parameter in the Forum file, (3) the link_id in the Links file, (4) the artid parameter in the Sections file, and (5) the dl_id parameter in the Download file.
network
low complexity
nuked-klan
7.5