Unrated severityNVD Advisory· Published Feb 28, 2008· Updated Apr 23, 2026
CVE-2008-1065
CVE-2008-1065
Description
Multiple SQL injection vulnerabilities in index.php in the XM-Memberstats (xmmemberstats) 2.0e module for XOOPS allow remote attackers to execute arbitrary SQL commands via the (1) letter or (2) sortby parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected products
1- cpe:2.3:a:xoops:xm_memberstats:2.0e:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- www.xssing.com/index.phpnvdExploit
- secunia.com/advisories/29107nvdVendor Advisory
- www.securityfocus.com/bid/27979nvd
News mentions
0No linked articles in our index yet.