CVE-2012-5098

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
23/09/2012
Last modified:
11/04/2025

Description

Multiple SQL injection vulnerabilities in Php-X-Links, possibly 1.0, allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to rate.php, (2) cid parameter to view.php, or (3) t parameter to pop.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:j_waite:php-x-links:0.1:*:*:*:*:*:*:*
cpe:2.3:a:j_waite:php-x-links:1.0:*:*:*:*:*:*:*