6.8
CVSSv2

CVE-2007-6667

Published: 04/01/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in faq.php in MyPHP Forum 3.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter. NOTE: the member.php vector is already covered by CVE-2005-0413.

Vulnerable Product Search on Vulmon Subscribe to Product

myphp myphp forum

myphp myphp forum 2.0

myphp myphp forum 1.0

Exploits

Name : MyPHP Forum <= 30 (Final) Multiple Remote SQL Injection Vulnerability Author : x0kster Email : x0kster@gmailcom Site : ihteamnet Script Download : wwwmyphpws/ Date : 31/12/2007 Dork : "Powered by: MyPHP Forum" Note: For work, magic_quotes_gpc must be turne ...