CVE-2008-6284

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
25/02/2009
Last modified:
09/04/2025

Description

SQL injection vulnerability in edit.php in Z1Exchange 1.0 allows remote attackers to execute arbitrary SQL commands via the site parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:1scripts:z1exchange:1.0:*:*:*:*:*:*:*