7.5
CVSSv2

CVE-2004-1843

Published: 20/03/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in Member Management System 2.1 allows remote malicious users to execute arbitrary SQL via the ID parameter to (1) resend.asp or (2) news_view.asp.

Vulnerable Product Search on Vulmon Subscribe to Product

Exploits

source: wwwsecurityfocuscom/bid/9931/info It has been reported that Member Management System may be prone to a SQL injection vulnerability that may allow a remote attacker to inject malicious SQL syntax into database queries The problem is reported to exist in the 'ID' parameter contained within the 'resendasp' and 'news_viewasp' scrip ...
source: wwwsecurityfocuscom/bid/9931/info It has been reported that Member Management System may be prone to a SQL injection vulnerability that may allow a remote attacker to inject malicious SQL syntax into database queries The problem is reported to exist in the 'ID' parameter contained within the 'resendasp' and 'news_viewasp' scri ...