← Back

CVE-2008-6013

nvd nist
Published: Jan 30, 2009Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

Multiple SQL injection vulnerabilities in Freeway before 1.4.3.210 allow remote attackers to execute arbitrary SQL commands via unspecified vectors involving the (1) advanced search result and (2) service resource pages.

Affected (21)

Products: Openfreeway: Freeway
1 product
Freeway
Configuration A
21 vulnerable
Vulnerable SoftwareAffected Versions
Openfreeway
Up to 1.4.2.197
Version 1.0.060
Version 1.0.25
Version 1.0.25 public_beta
Version 1.0.59
Version 1.1.1.76
Version 1.1.1.80
Version 1.1.1.81
Version 1.2.0.113
Version 1.3.0.142
Version 1.3.1.142
Version 1.3.1.147
Version 1.3.2.154
Version 1.3.2.160
Version 1.3.2.160 joomla_beta
Version 1.3
Version 1.4.0.171
Version 1.4.1.171
Version 1.4.1.197
Version 1.4.1
Version 1.4

References (8)

Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.