CVE-2008-6648 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in crumbs.php in Ktools PhotoStore 3.4.3 and 3.5.2 allows remote attackers to execute arbitrary SQL commands via the gid parameter to about_us.php. NOTE: this might be the same issue as CVE-2008-6647.
Reference
http://osvdb.org/45141 http://secunia.com/advisories/30194 http://www.securityfocus.com/bid/29136 https://exchange.xforce.ibmcloud.com/vulnerabilities/42317 https://www.exploit-db.com/exploits/5582
Share on: