CVE-2008-2501

CVE-2008-2501

CVE-2008-2501 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Multiple SQL injection vulnerabilities in PHPhotoalbum 0.5 allow remote attackers to execute arbitrary SQL commands via the (1) album parameter to thumbnails.php and the (2) pid parameter to displayimage.php.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.