7.5
CVSSv2

CVE-2007-6656

Published: 04/01/2008 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in content_css.php in the TinyMCE module for CMS Made Simple 1.2.2 and previous versions allows remote malicious users to execute arbitrary SQL commands via the templateid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

cmsmadesimple cms made simple

Exploits

------------------------------------------------------------------------- CMS Made Simple <= 122 (TinyMCE module) - Remote SQL Injection Advisory ------------------------------------------------------------------------- author: EgiX mail: n0b0d13s[at]gmail[dot]com link: wwwcmsmadesimpleorg/ dork: "This site is powe ...