7.5
CVSSv2

CVE-2007-3583

Published: 05/07/2007 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in details_news.php in Girlserv ads 1.5 and previous versions allows remote malicious users to execute arbitrary SQL commands via the idnew parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

girlserv girlserv ads

Exploits

Girlserv ads <= 15 Remote SQL Injection Vulnerability Found By : Cold z3ro , Cold-z3ro@hotmailcom Homepages : hackteachorg , h4pscom Script : wwwgirlserv-democom/girlserv-ads15zip For Admin : /details_newsphp?n=det&idnew=-1/**/union/**/select/**/0,1,admin_name,3,4/**/from/**/admin/**/where%20admin_id=1/* For ...