Vulnerabilities > Xoops > XM Memberstats > 2.0e

DATE CVE VULNERABILITY TITLE RISK
2008-02-28 CVE-2008-1065 SQL Injection vulnerability in Xoops XM Memberstats 2.0E
Multiple SQL injection vulnerabilities in index.php in the XM-Memberstats (xmmemberstats) 2.0e module for XOOPS allow remote attackers to execute arbitrary SQL commands via the (1) letter or (2) sortby parameter.
network
low complexity
xoops CWE-89
7.5