CVE detail
CVE-2008-6225 — CVE-2008-6225
Published 2009-02-20 · Modified 2026-06-16 · Vendor mole-group · Product airline_ticket_sale_script · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0123
EPSS probability
exploitation probability, 30d
66.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
SQL injection vulnerability in info.php in Mole Group Airline Ticket Sale Script allows remote attackers to execute arbitrary SQL commands via the flight parameter. NOTE: the vendor has disputed this issue, stating "crazy hackers and so named Security companies [spread] out such false informations. Such scripts or versions [do not] exist.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References