7.5
CVSSv2

CVE-2009-3150

Published: 10/09/2009 Updated: 19/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php in Multi Website 1.5 allows remote malicious users to execute arbitrary SQL commands via the Browse parameter in a vote action.

Vulnerable Product Search on Vulmon Subscribe to Product

multi-website multi website 1.5

Exploits

> > [+] Bug : Powered by Multi Website 15 (index php action) Remote SQL Injection Vulnerability > > > > [+] Script home : wwwmulti-websitecom > > > > [+] Affected versions : 15 > > > > [+] Solution : nothing ; > > > > > > > > ============================================== ...