7.5
CVSSv2

CVE-2010-0471

Published: 02/02/2010 Updated: 23/06/2010
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the comment submission interface (includes/comment.php) in Enano CMS prior to 1.0.6pl1 allows remote malicious users to execute arbitrary SQL commands via unspecified parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

enanocms enanocms 1.0.5

enanocms enanocms 1.0.1

enanocms enanocms 0.9.3

enanocms enanocms 0.9.1

enanocms enanocms 0.8.4

enanocms enanocms 0.8.3

enanocms enanocms 0.8.2

enanocms enanocms 0.8.1

enanocms enanocms 1.0.4

enanocms enanocms 1.0.3

enanocms enanocms 1.0.2b1

enanocms enanocms 1.0.2

enanocms enanocms

enanocms enanocms 1.0

enanocms enanocms 0.9.2