7.5
CVSSv2

CVE-2007-6004

Published: 15/11/2007 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in index.php in Toko Instan 7.6 allow remote malicious users to execute arbitrary SQL commands via (1) the id parameter in an artikel action or (2) the katid parameter in a produk action.

Vulnerable Product Search on Vulmon Subscribe to Product

toko instan 7.6

Exploits

# Indonesian Newhack Security Advisory # ------------------------------------ # Toko Instan V76 - Multiple Remote SQL Injection Vulnerabilities # Waktu : Nov 14 2007 08:30AM # Software : Toko Instan V76 # Vendor : wwwtokohandalcom/ # Demo Site : wwwtokohandalcom/demo/demo2php # Ditemukan oleh : k1tk4t | newha ...