6.5
CVSSv2

CVE-2008-2767

Published: 18/06/2008 Updated: 08/08/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in search.asp in Xigla Poll Manager XE allows remote authenticated users with administrator role privileges to execute arbitrary SQL commands via the orderby parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

xigla absolute poll manager xe