VYPR
Unrated severityNVD Advisory· Published Feb 20, 2009· Updated Apr 23, 2026

CVE-2008-6220

CVE-2008-6220

Description

SQL injection vulnerability in login.php in Simple Document Management System (SDMS) 1.1.5 and 1.1.4, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the pass parameter.

Affected products

2
  • cpe:2.3:a:cafuego:simple_document_management_system:1.1.4:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cafuego:simple_document_management_system:1.1.4:*:*:*:*:*:*:*
    • cpe:2.3:a:cafuego:simple_document_management_system:1.1.5:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.