7.5
CVSSv2

CVE-2007-1026

Published: 21/02/2007 Updated: 16/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in view.php in XLAtunes 0.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the album parameter in view mode. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

scriptdungeon xlatunes

Exploits

#Critical Status:High #Found By:Bl0od3r #Download:wwwscriptdungeoncom/scriptphp?ScriptID=2844 #Greetz:all my friends #fuckz:Don(h4cky0u) for steeling hacks of others,for his 100% noobility,for his noobassDON your an idiotfucka - #confkey->Password #confvalue->Username #Table:config #hostcom/path/?mode=view&album=-1%20 ...