CVE-2009-2402
PHPEcho CMS <2.0-rc3 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in index.php in the forum module in PHPEcho CMS 2.0-rc3 allows remote attackers to execute arbitrary SQL commands via the id parameter in a thread action, a different vector than CVE-2008-0355.
Exploits (1)
Scores
EPSS
0.0025
EPSS Percentile
48.2%
Classification
CWE
CWE-89
Status
draft
Affected Products (1)
phpecho_cms/phpecho_cms
Timeline
Published
Jul 09, 2009
Tracked Since
Feb 18, 2026