7.5
CVSSv2

CVE-2008-1990

Published: 27/04/2008 Updated: 11/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in Acidcat CMS 3.4.1 allow remote malicious users to execute arbitrary SQL commands via the (1) cID parameter to default.asp and the (2) username parameter to main_login2.asp.

Vulnerable Product Search on Vulmon Subscribe to Product

acidcat acidcat cms 3.4.1

Exploits

########################## wwwBugReportir ####################################### # # AmnPardaz Security Research Team # # Title: Acidcat CMS Multiple Vulnerabilities # Vendor: wwwacidcatcom # Vulnerable Version: 341 # Exploit: Available # Impact: High # Fix: N/A # Original Advisory: bugreportir/indexphp?/36 ################### ...