Vulnerabilities > PHP Fusion > Members CV Module > Medium

DATE CVE VULNERABILITY TITLE RISK
2009-03-05 CVE-2009-0831 SQL Injection vulnerability in PHP-Fusion Members CV Module 1.0
SQL injection vulnerability in members.php in the Members CV (job) module 1.0 for PHP-Fusion, when magic_quotes_gpc is disabled, allows remote authenticated users to execute arbitrary SQL commands via the sortby parameter.
network
php-fusion CWE-89
6.0