7.5
CVSSv2

CVE-2008-0187

Published: 09/01/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in songinfo.php in SAM Broadcaster samPHPweb, possibly 4.2.2 and previous versions, allows remote malicious users to execute arbitrary SQL commands via the songid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

spacial audio solutions samphpweb 4.2.2

Exploits

Title:samPHPweb (songinfophp) Remote SQL Injection Script:samPHPweb Download:wwwspacialaudiocom/download/samPHPwebzip Bug:songinfophp Author:BackDoor Dork1:inurl:samPHPweb/playingphp Dork2:This page was produced using SAM Broadcaster © Copyright Spacial Audio Solutions, LLC 1999 - 2004 Exploit: wwwvictimcom/scriptpath/songinfop ...