7.5
CVSSv2

CVE-2008-3784

Published: 26/08/2008 Updated: 06/08/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in scrape.php in BtiTracker 1.4.7 and previous versions and xBtiTracker 2.0.542 and previous versions allows remote malicious users to execute arbitrary SQL commands via the info_hash parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

btitracker project btitracker

xbtitracker project xbtitracker

Exploits

## BtiTracker/xBtiTracker Remote SQL Injection Vulnerability ## Author: InATeam (inattackru/) ## Affected versions: BtiTracker <= 147, xBtiTracker <= 20542 ## Software site: wwwbtiteamorg/ ## ## ============================================================================== ## Exploit: ## ================================== ...