7.5
CVSSv2

CVE-2008-4884

Published: 04/11/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Hosting Script allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

yourfreeworld classifieds hosting script

Exploits

Banner Management (id) Remote SQL Injection Vulnerability ___________________________________ Author: Hussin X Home : wwwIQ-TYcom & wwwTrYaGcc ___________________________________ script : wwwyourfreeworldcom/script/bannermanagementscriptasp DorK : :) Exploit : _______ trphp?id=-1+union+select+1,2,3,concat(user(),ve ...
Classifieds Hosting( id ) Remote SQL Injection Vulnerability ___________________________________ Author: Hussin X Home : wwwIQ-TYcom & wwwTrYaGcc ___________________________________ script : wwwyourfreeworldcom/script/classifiedshostingphp DorK : inurl:trphp?id= Hosting Exploit : _______ trphp?id=-1+union+select+1, ...