7.5
CVSSv2

CVE-2008-5969

Published: 27/01/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in popupproduct.php in Sunbyte e-Flower allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

sunbyte e-flower _nil

Exploits

#=========================================================== # # SunByte e-Flower SQL Injection Attack by [W4RL0CK] # #=========================================================== # # VENDOR: Sunbyte URL: wwwsunbytenet/ # APP: Sunbyte e-Flower (eCommerce webapp) # APP SITE: wwwsunbytenet/products/indexphp?screen=eflower # AUTHOR ...