7.5
CVSSv2

CVE-2008-6220

Published: 20/02/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in login.php in Simple Document Management System (SDMS) 1.1.5 and 1.1.4, and possibly earlier, allows remote malicious users to execute arbitrary SQL commands via the pass parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

cafuego simple document management system 1.1.4

cafuego simple document management system 1.1.5

Exploits

SDMS Simple Document Management System v114 SQL Injection ___________________________________________________________________________ Author: Yuri Program: SDMS Simple Document Management System Version: v114 (and probably all older versions as well) Website: sdmscafuegonet/ How it works _______________________________________ ...