CVE-2008-2968 | Yektaweb Academic Web Tools up to 1.4.2.8 rating.php book_id sql injection (EDB-5861 / XFDB-43177)
A vulnerability categorized as critical has been discovered in Yektaweb Academic Web Tools up to 1.4.2.8. The affected element is an unknown function of the file rating.php. Such manipulation of the argument book_id leads to sql injection.
This vulnerability is documented as CVE-2008-2968. The attack can be executed remotely. Additionally, an exploit exists.