VYPR
Unrated severityNVD Advisory· Published Jun 20, 2007· Updated Apr 23, 2026

CVE-2007-3301

CVE-2007-3301

Description

SQL injection vulnerability in forum/include/error/autherror.cfm in FuseTalk allows remote attackers to execute arbitrary SQL commands via the errorcode parameter. NOTE: a patch may have been released privately between April and June 2007. NOTE: this issue may overlap CVE-2007-3273.

Affected products

4
  • cpe:2.3:a:fusetalk:fusetalk:2.0:-:basic:*:*:*:*:*+ 3 more
    • cpe:2.3:a:fusetalk:fusetalk:2.0:-:basic:*:*:*:*:*
    • cpe:2.3:a:fusetalk:fusetalk:2.0:-:coldfusion:*:*:*:*:*
    • cpe:2.3:a:fusetalk:fusetalk:2.0:-:enterprise:*:*:*:*:*
    • cpe:2.3:a:fusetalk:fusetalk:2.0:-:standard:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.