7.5
CVSSv2

CVE-2006-4612

Published: 07/09/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in ReplyNew.asp in ZIXForum 1.12 allows remote malicious users to execute arbitrary SQL commands via the RepId parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

john andersson zixforum 1.12

Exploits

################################################################################ ## ## ## ©ZIXForum 112 <= "RepId" Remote SQL Injection ## ## - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - ## ## Credit by | ...
#!/usr/bin/perl ########################################### # ZIXForum <= v112 Exploit # Vulnerability found by Chironex Fleckeri # Created By: SlimTim10 # <slimtim10@gmailcom> ########################################### # Google dork: # intext:"ZIXForum 112 by: ZixCom 2002" ########################################### use IO::Socket:: ...