7.5
CVSSv2

CVE-2010-0968

Published: 16/03/2010 Updated: 17/03/2010
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in bannershow.php in Geekhelps ADMP 1.01 allows remote malicious users to execute arbitrary SQL commands via the click parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

geekhelps admp 1.01

Exploits

#########################local file include / sql injection################# Author: ItSecTeam download from:geekhelpsnet/downloadphp script:ADMP remote:yes dork::D *********************lfi******************* vul1:/path/themes/colorvoid/footerphp include("/themes/$style/infophp"); ?> line 3 vuls:themes/default-green/footerphp t ...