7.5
CVSSv2

CVE-2007-0904

Published: 13/02/2007 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in projects.php in LightRO CMS 1.0 allows remote malicious users to execute arbitrary SQL commands via the ID parameter to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

lightro lightro cms 1.0

Exploits

<% ResponseBuffer = True %> <% On Error Resume Next %> <% ServerScriptTimeout = 100 %> <% '=============================================================================================== '[Script Name: LightRO CMS 10 (indexphp projectid) Remote SQL Injection Exploit '[Coded by : ajann '[Author : ajann '[Contact : ...