CVE-2008-2902 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in profile.php in AlstraSoft AskMe Pro 2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: The que_id parameter to forum_answer.php is already covered by CVE-2007-4085.
Reference
http://secunia.com/advisories/30672 http://www.securityfocus.com/bid/29732 https://exchange.xforce.ibmcloud.com/vulnerabilities/43106 https://www.exploit-db.com/exploits/5821
Share on: