7.5
CVSSv2

CVE-2008-6950

Published: 12/08/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in login.asp in Bankoi WebHosting Control Panel 1.20 allow remote malicious users to execute arbitrary SQL commands via the (1) username or (2) password field.

Vulnerable Product Search on Vulmon Subscribe to Product

webhost-panel bankoi webhosting control panel 1.20

Exploits

[~] Bankoi Webhost Panel 120 (Auth Bypass) [~] [~] ---------------------------------------------------------- [~] author: R3d-D3v!L [~] [~] Date: 15112008 [~] [~] Home: wwwahackernet [~] [~] contact: N/A [~] [~] ----------------------------------------------------------- [~] Exploit: username: r0' or ' 1=1-- password: r0' or ' 1=1-- [~] a ...