6.5
CVSSv2

CVE-2008-6773

Published: 29/04/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Static code injection vulnerability in user/internettoolbar/edit.php in YourPlace 1.0.2 and previous versions allows remote authenticated users to execute arbitrary PHP code into user/internettoolbar/index.php via the (1) fav1_url, (2) fav1_name, (3) fav2_url, (4) fav2_name, (5) fav3_url, (6) fav3_name, (7) fav4_url, (8) fav4_name, (9) fav5_url, or (10) fav5_name parameters.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

peterselie yourplace 1.0.1

peterselie yourplace

peterselie yourplace 1.0

Exploits

[START] ############################################################################################################################################ [0x01] Informations: Script : YourPlace 05 (beta 1) Download : wwwhotscriptscom/jumpphp?listing_id=80545&jump_type=1 Vulnerability : DB Disclosure / Arbitrary Data Savin ...