7.5
CVSSv2

CVE-2010-3461

Published: 17/09/2010 Updated: 17/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the Publisher module in eNdonesia 8.4 allows remote malicious users to execute arbitrary SQL commands via the artid parameter in a printarticle action to mod.php, a different vector than CVE-2007-3394.

Vulnerable Product Search on Vulmon Subscribe to Product

endonesia endonesia 8.4

Exploits

======================================================================/ eNdonesia 84 (Print Module) SQL Injection Vulnerability Download : sourceforgenet/projects/endonesia/files/eNdonesia Version : 84 or lower maybe also affected Dork : modphp?mod=publisher&amp ...