CVE-2008-2968
Yektaweb Academic Web Tools < 1.4.2.8 - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in rating.php in Academic Web Tools (AWT YEKTA) 1.4.3.1, and 1.4.2.8 and earlier, allows remote attackers to execute arbitrary SQL commands via the book_id parameter.
Exploits (1)
References (6)
Scores
EPSS
0.0082
EPSS Percentile
74.5%
Details
CWE
CWE-89
Status
published
Products (1)
yektaweb/academic_web_tools
< 1.4.2.8
Published
Jul 02, 2008
Tracked Since
Feb 18, 2026