6.5
CVSSv2

CVE-2008-0616

Published: 06/02/2008 Updated: 02/08/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the administration panel in the DMSGuestbook 1.7.0 plugin for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via unspecified vectors. NOTE: it is not clear whether this issue crosses privilege boundaries.

Vulnerable Product Search on Vulmon Subscribe to Product

dmsguestbook project dmsguestbook 1.7.0

Exploits

######################################################## Wordpress Plugin dmsguestbook 170 Multiple Remote Vulnerabilities by NBBN 2nd, February 2008 ######################################################## 1) File Disclosure Open the following url you can see the config data of wordpress, with the mysql-server username and password In this ...