VYPR
Unrated severityNVD Advisory· Published Feb 16, 2009· Updated Jun 16, 2026

CVE-2008-6142

CVE-2008-6142

Description

Multiple SQL injection vulnerabilities in admin/usercheck.php in FlexPHPic 0.0.4 and FlexPHPic Pro 0.0.3, and other 0.0.x versions, allow remote attackers to execute arbitrary SQL commands via (1) the checkuser parameter (aka username field), or (2) the checkpass parameter (aka password field), to admin/index.php.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:china-on-site:flexphpic:0.0.3:-:pro:*:*:*:*:*+ 1 more
    • cpe:2.3:a:china-on-site:flexphpic:0.0.3:-:pro:*:*:*:*:*
    • cpe:2.3:a:china-on-site:flexphpic:0.0.4:*:*:*:*:*:*:*
  • Range: 0.0.4

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.