7.5
CVSSv2

CVE-2009-0279

Published: 27/01/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in comentar.php in Pardal CMS 0.2.0 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

pardalcms pardalcms 0.1.2

pardalcms pardalcms 0.1.1

pardalcms pardalcms

pardalcms pardalcms 0.1.3

pardalcms pardalcms 0.01b

pardalcms pardalcms 0.1a

pardalcms pardalcms 0.01c

Exploits

--+++=============================================================+++-- --+++====== Pardal CMS <= 020 Blind SQL Injection Exploit ======+++-- --+++=============================================================+++-- <?php function usage () { echo "\nPardal CMS <= 020 Blind SQL Injection Exploit" "\n[+] Author : darkjoker ...