CVE-2007-1061
PHP-Nuke <8.0 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in index.php in Francisco Burzi PHP-Nuke 8.0 Final and earlier, when the "HTTP Referers" block is enabled, allows remote attackers to execute arbitrary SQL commands via the HTTP Referer header (HTTP_REFERER variable).
Exploits (3)
References (8)
Scores
EPSS
0.6695
EPSS Percentile
98.6%
Details
Status
published
Products (1)
francisco_burzi/php-nuke
< 8.0_final
Published
Feb 22, 2007
Tracked Since
Feb 18, 2026