6.5
CVSSv2

CVE-2008-2901

Published: 30/06/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in Haudenschilt Family Connections CMS (FCMS) 1.4 allow remote authenticated users to execute arbitrary SQL commands via the (1) address parameter to addressbook.php, the (2) getnews parameter to familynews.php, and the (3) poll_id parameter to home.php in a results action.

Vulnerable Product Search on Vulmon Subscribe to Product

haudenschilt family connections cms 1.4

Exploits

========================================================================== Family Connections CMS 14 Multiple Remote SQL Injection Vulnerabilities ========================================================================== ,--^----------,--------,-----,-------^--, | ||||||||| `--------' | O CWH Underground Hacking Team ...