7.5
CVSSv2

CVE-2009-1480

Published: 29/04/2009 Updated: 10/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php Pragyan CMS 2.6.4 allows remote malicious users to execute arbitrary SQL commands via the fileget parameter in a view action and other unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

pragyan cms project pragyan cms 2.6.4

Exploits

******* Salvatore "drosophila" Fresta ******* [+] Application: Pragyan CMS [+] Version: 264 [+] Website: wwwpragyanorg [+] Bugs: [A] Multiple SQL Injection [+] Exploitation: Remote [+] Date: 22 Apr 2009 [+] Discovered by: Salvatore "drosophila" Fresta [+] Author: Salvatore "drosophila" Fresta [+] Contact: e-mail: drosophilaxxx@gm ...