7.5
CVSSv2

CVE-2009-2021

Published: 09/06/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in search.php in Virtue Classifieds allows remote malicious users to execute arbitrary SQL commands via the category parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

virtuenetz virtue classifieds

Exploits

################################################################################################################################################# CMS : Virtue Classifieds WEB : wwwvirtuenetzcom/classified/ Archivo : searchphp Variable Tipo : GET Valor : category Tipo : SQL Injection Url : http:/wwwsitecom/searchphp?category=[SQLI] Po ...