openwrt ▾
›
openwrt-25.12 ▾
›
vulnerability
›
CVE-2008-5727
Component Overview
Vulnerability Overview
Name
CVE-2008-5727
Source
NVD (
link
)
Debian (
link
)
Description
SQL injection vulnerability in modules/auth/password_recovery.php in AIST NetCat 3.12 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the query string.
CWEs
CWE-89
Published Date
Dec 26, 2008
Updated Date
Jun 16, 2026
Workaround
-
Advisories
http://www.securityfocus.com/bid/32990
Exploit
http://www.securityfocus.com/bid/32990
Exploit
Analysis
#
Affected Component
Analysis
netcat
Exploitable
Vulnerability Rating
#
6.8
CVSSv2
Others affected component
#
Name
Project
Project Version
Version
Status
netcat
openwrt
master
0.7.1-r2
Exploitable