Unrated severityNVD Advisory· Published Sep 15, 2008· Updated Apr 23, 2026
CVE-2008-4078
CVE-2008-4078
Description
SQL injection vulnerability in the AR/AP transaction report in (1) LedgerSMB (LSMB) before 1.2.15 and (2) SQL-Ledger 2.8.17 and earlier allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- secunia.com/advisories/31843nvdPatchVendor Advisory
- www.securityfocus.com/bid/31109nvdPatchThird Party AdvisoryVDB Entry
- securityreason.com/securityalert/4250nvdThird Party Advisory
- www.securityfocus.com/archive/1/496181/100/0/threadednvdBroken LinkThird Party AdvisoryVDB Entry
- exchange.xforce.ibmcloud.com/vulnerabilities/45034nvdThird Party AdvisoryVDB Entry
- sourceforge.net/project/shownotes.phpnvdProduct
News mentions
0No linked articles in our index yet.