Unrated severityNVD Advisory· Published Jun 18, 2008· Updated Apr 23, 2026
CVE-2008-2428
CVE-2008-2428
Description
Multiple SQL injection vulnerabilities in TorrentTrader 1.08 Classic allow remote attackers to execute arbitrary SQL commands via the (1) email or (2) wantusername parameter to account-signup.php, or the (3) receiver parameter to account-inbox.php in a msg action.
Affected products
1- cpe:2.3:a:torrenttrader:torrenttrader_classic:1.08:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/30565nvdVendor Advisory
- secunia.com/secunia_research/2008-15/advisory/nvdVendor Advisory
- sourceforge.net/project/shownotes.phpnvd
- www.securityfocus.com/archive/1/493434/100/0/threadednvd
- www.securityfocus.com/bid/29787nvd
- www.torrenttrader.org/index.phpnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43165nvd
News mentions
0No linked articles in our index yet.