7.5
CVSSv2

CVE-2008-2891

Published: 27/06/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php in eMuSOFT emuCMS 0.3 allows remote malicious users to execute arbitrary SQL commands via the cat_id parameter in a category action.

Vulnerable Product Search on Vulmon Subscribe to Product

emusoft emucms 0.3

Exploits

################################################## ####################### # # AUTHOR : TurkishWarriorr # # HOME : www1923turkorg # ################################################## ####################### Dork : Powered by emuCMS exploit : indexphp?page=category&cat_id=-9999+union+all+select+1,concat(user,char(58),passw ,char(58),e ...