7.5
CVSSv2

CVE-2008-5088

Published: 14/11/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in PHPKB Knowledge Base Software 1.5 Professional allow remote malicious users to execute arbitrary SQL commands via the ID parameter to (1) email.php and (2) question.php, a different vector than CVE-2008-1909.

Vulnerable Product Search on Vulmon Subscribe to Product

knowledgebase-script phpkb knowledge base software 1.5

Exploits

[~] PHPKB Knowledge Base Software v15 Professional (emailphp) - SQL Injection Vulnerability [~] [~] wwwknowledgebase-scriptcom [~] ---------------------------------------------------------- [~] Bug founded by d3v1l [~] [~] Date: 20092007 [~] [~] [~] d3v1l@spoofercom [~] [~] ----------------------------------------------------------- [ ...
[+] {In The Name Of Allah The Mercifull} [+] [~] Tybe: PHPKB Knowledge Base Software v2 Multilanguage Support Multi SQL Injection Vulnerabilities [~] Vendor: wwwknowledgebase-scriptcom [+] Software:PHPKB Knowledge Base Software v2 Multilanguage Support [-] [+] author: ((R3d-D3v!L)) [~] [+] TEAM: ArAB!AN !NFORMAT!ON SeCuR!TY ---->((4!5)) [~] ...