Critical severity9.8NVD Advisory· Published May 14, 2019· Updated Jun 17, 2026
CVE-2019-8923
CVE-2019-8923
Description
XAMPP through 5.6.8 and previous allows SQL injection via the cds-fpdf.php jahr parameter. NOTE: This product is discontinued.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- XAMPP/XAMPPdescription
Patches
Vulnerability mechanics
References
7- packetstormsecurity.com/files/151756/XAMPP-5.6.8-Cross-Site-Scripting-SQL-Injection.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/46424/nvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2019/Feb/43nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/107168nvdThird Party AdvisoryVDB Entry
- sourceforge.net/projects/xampp/files/XAMPP%20Windows/1.8.2/nvdThird Party Advisory
- sourceforge.net/projects/xampp/files/XAMPP%20Windows/5.5.19/nvdThird Party Advisory
- sourceforge.net/projects/xampp/files/XAMPP%20Windows/5.6.8/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.