7.5
CVSSv2

CVE-2008-3136

Published: 10/07/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in catalogue.php in AShop Deluxe 4.x allows remote malicious users to execute arbitrary SQL commands via the cat parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

ashopsoftware ashop deluxe 4

Exploits

#usr/bin/perl use LWP::UserAgent; use HTTP::Cookies; use Getopt::Long; use URI::Escape; #-------------------------------------------------------------------------------------------------------------------------------------------------------- # [x] AShop Deluxe 4x Remote SQL inJection Exploit # [x] Ditemukan Oleh : n0c0py - aka 5iR 4b03D # [x] ...