Candidate: CVE-2008-5813 PublicDate: 2009-01-02 18:11:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5813 Description: SQL injection vulnerability in inc/rubriques.php in SPIP 1.8 before 1.8.3b, 1.9 before 1.9.2g, and 2.0 before 2.0.2 allows remote attackers to execute arbitrary SQL commands via the ID parameter. NOTE: some of these details are obtained from third party information. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_spip: upstream_spip: needs-triage dapper_spip: ignored (reached end-of-life) gutsy_spip: DNE hardy_spip: DNE intrepid_spip: DNE jaunty_spip: DNE karmic_spip: not-affected (2.0.7-1) devel_spip: not-affected (2.0.7-1)