CVE-2008-3888

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
02/09/2008
Last modified:
09/04/2025

Description

SQL injection vulnerability in members.asp in Mini-NUKE Freehost 2.3 allows remote attackers to execute arbitrary SQL commands via the uid parameter in a member_details action.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:aspindir:mini_nuke_freehost:2.3:*:*:*:*:*:*:*