CVE-2008-6328

Butterflymedia Butterfly Organizer - SQL Injection

Title source: rule

Description

SQL injection vulnerability in view.php in Butterfly Organizer 2.0.0 and 2.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Osirys · textwebappsphp
https://www.exploit-db.com/exploits/7411
exploitdb WORKING POC VERIFIED
by CWH Underground · textwebappsphp
https://www.exploit-db.com/exploits/5797

Scores

EPSS 0.0052
EPSS Percentile 66.6%

Classification

CWE
CWE-89
Status draft

Affected Products (2)

butterflymedia/butterfly_organizer
butterflymedia/butterfly_organizer

Timeline

Published Feb 27, 2009
Tracked Since Feb 18, 2026