7.5
CVSSv2

CVE-2007-6583

Published: 28/12/2007 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in admin/ops/findip/ajax/search.php in 1024 CMS 1.3.1 allows remote malicious users to execute arbitrary SQL commands via the ip parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

1024 cms 1024 cms 1.3.1

Exploits

vuln: 1024 CMS 131 (LFI/SQL) Multiple Vulnerabilities script info and download: www1024cmscom author: irk4z[at]yahoopl greets to: str0ke, wacky '-----------------------------------------------------------------------------' # sql-injection: code: /admin/ops/findip/ajax/searchphp: 8 $get_users = mysql_query ...