7.5
CVSSv2

CVE-2008-4900

Published: 04/11/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in tr.php in YourFreeWorld Classifieds Blaster Script allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

yourfreeworld classifieds blaster script

Exploits

Classifieds Blaster ( id ) Remote SQL Injection Vulnerability ___________________________________ Author: Hussin X Home : wwwIQ-TYcom & wwwTrYaGcc ___________________________________ script : wwwyourfreeworldcom/script/classifiedsblasterphp DorK : :) Exploit : _______ trphp?id=-1+union+select+1,2,3,concat(0x3a,Usern ...
Banner Management (id) Remote SQL Injection Vulnerability ___________________________________ Author: Hussin X Home : wwwIQ-TYcom & wwwTrYaGcc ___________________________________ script : wwwyourfreeworldcom/script/bannermanagementscriptasp DorK : :) Exploit : _______ trphp?id=-1+union+select+1,2,3,concat(user(),ve ...