7.5
CVSSv2

CVE-2008-6781

Published: 01/05/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in directory.php in Sites for Scripts (SFS) Gaming Directory allows remote malicious users to execute arbitrary SQL commands via the cat_id parameter in a list action.

Vulnerable Product Search on Vulmon Subscribe to Product

scripts-for-sites ez gaming directory

Exploits

####################################################### # Author : BeyazKurt # Contact : BeyazKurt@BSDMailCom # Site : wwwkhg-crewws - KOSOVA HACKERS GROUP # LAHEY mahkemesini kiniyoruz FUCK THE JUSTICE! # # Script : SFS Gaming Directory # Price: $ 2495 # Script Site: scripts-for-sitescom/itemphp?item=112 # # D0rk : "sie go amk iÅ ...
================================================================================== SFS EZ Gaming Directory (directoryphp id) Remote SQL Injection Vulnerability ================================================================================== __ __ __ / / / /_ _______/ /__ __ __ / /_/ / / / / ___/ / _ \/ ...