6
CVSSv2

CVE-2008-6725

Published: 17/04/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 605
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in CMScout 2.06 allow remote authenticated users to execute arbitrary SQL commands via the id parameter to (1) index.php in a mythings page (mythings.php) and (2) the users page in admin.php.

Vulnerable Product Search on Vulmon Subscribe to Product

cmscout cmscout 2.06

Exploits

############################################################################################# [+] CMScout 206 Remote SQL Injection/Local File Inclusion [+] Discovered By SirGod [+] Visit : wwwmortal-teamorg [+] Visit : wwwh4cky0uorg [+] Greetz : All my friends #################################################################################### ...