7.5
CVSSv2

CVE-2008-7059

Published: 24/08/2009 Updated: 11/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php in One-News Beta 2 allows remote malicious users to execute arbitrary SQL commands via the q parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

aled owen one-news

Exploits

source: wwwsecurityfocuscom/bid/30804/info One-News is prone to multiple input-validation vulnerabilities, including an SQL-injection issue and multiple HTML-injection issues The vulnerabilities occur because the application fails to sufficiently sanitize user-supplied data Exploiting these issues could allow an attacker to steal cooki ...
______________________///////////////\\\\\\\\\\\\\\\____________________ }Name : OneNews Beta 2 Multiple Vulnerabilities { {Author : suN8Hclf[crimsoN_Loyd9], (DaRk-CodeRs Group) } }Source : sourceforgenet/project/showfilesphp?group_id=193198 { {Dork : Powered by One-News ...