AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2009-1208

HIGH · CVSS 7.5 EPSS 1.96%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2009-04-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2009-1208
Severity
HIGH
CVSS
7.5
EPSS
1.96%

Original NVD Description

SQL injection vulnerability in auth2db 0.2.5, and possibly other versions before 0.2.7, uses the addslashes function instead of the mysql_real_escape_string function, which allows remote attackers to conduct SQL injection attacks using multibyte character encodings.