CVE Vulnerabilities

CVE-2007-0865

Published: Feb 09, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in comments.php in LushiNews 1.01 and earlier allows remote authenticated users to inject arbitrary SQL commands via the id parameter.

Affected Software

NameVendorStart VersionEnd Version
LushinewsLushinews1.00 (including)1.00 (including)
LushinewsLushinews1.01 (including)1.01 (including)

References