7.5
CVSSv2

CVE-2010-2905

Published: 28/07/2010 Updated: 17/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in info.php in ScriptsFeed and BrotherScripts (BS) Scripts Directory allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

brotherscripts scripts directory

scriptsfeed scripts directory

Exploits

################################################################# # Exploit Title: BS Script Directory remote SQL injection vulnerability # Date: 15th july 2010 # Author: D4rk357 #Critical:high #contact:d4rk357[at]yahoo[dot]in Price : 2495 $ # Software Link:wwwbrotherscriptscom/product_infophp?products_id=454 Greetz to :b0nd, Fb ...