7.5
CVSSv2

CVE-2010-3027

Published: 16/08/2010 Updated: 17/08/2010
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in index.php in Tycoon Baseball Script 1.0.9 allows remote malicious users to execute arbitrary SQL commands via the game_id parameter in a game_player action.

Vulnerable Product Search on Vulmon Subscribe to Product

tycoon baseball script 1.0.9

Exploits

% Tycoon(CMS) Record Script Sql vulnerability ------------------------------------------------------------------------------- 0 | | | | | | TM 1 _______ _ __ ___ ______| |__ __ _ ___| | _____ _ __ _ __ ___| |_ 0 |_ / _ \| '_ \ / _ \______| '_ \ / _` |/ __| |/ / _ \ '__| '_ ...