Unrated severityNVD Advisory· Published Aug 6, 2014· Updated Jun 17, 2026
CVE-2014-5082
CVE-2014-5082
Description
Multiple SQL injection vulnerabilities in admin/admin.php in Sphider 1.3.6 and earlier, Sphider Pro, and Sphider-plus allow remote attackers to execute arbitrary SQL commands via the (1) site_id or (2) url parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:sphider:sphider:*:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:sphider:sphider:*:*:*:*:*:*:*:*range: <=1.3.6
- cpe:2.3:a:sphider:sphider:1.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:sphider:sphider:1.3.3:*:*:*:*:*:*:*
- cpe:2.3:a:sphider:sphider:1.3.4:*:*:*:*:*:*:*
- cpe:2.3:a:sphider:sphider:1.3.4:b:*:*:*:*:*:*
- cpe:2.3:a:sphider:sphider:1.3.5:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.