7.5
CVSSv2

CVE-2008-2453

Published: 27/05/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in PHP Classifieds Script allow remote malicious users to execute arbitrary SQL commands via the fatherID parameter to (1) browse.php and (2) search.php.

Vulnerable Product Search on Vulmon Subscribe to Product

phpclassifiedsscript php classifieds script

Exploits

|| || | || o_,_7 _|| _o_7 _|| 4_|_|| o_w_, ( : / (_) / ( |-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=| | _ __ __ __ ______ | | /' \ __ /'__`\ ...