7.5
CVSSv2

CVE-2010-4006

Published: 03/11/2010 Updated: 10/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in search.php in WSN Links 5.0.x prior to 5.0.81, 5.1.x prior to 5.1.51, and 6.0.x prior to 6.0.1 allow remote malicious users to execute arbitrary SQL commands via the (1) namecondition or (2) namesearch parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

wsnlinks wsn links 5.0.80

wsnlinks wsn links 5.0.0

wsnlinks wsn links 5.0.17

wsnlinks wsn links 5.0.18

wsnlinks wsn links 5.0.23

wsnlinks wsn links 5.0.24

wsnlinks wsn links 5.0.30

wsnlinks wsn links 5.0.31

wsnlinks wsn links 5.0.32

wsnlinks wsn links 5.0.39

wsnlinks wsn links 5.0.4

wsnlinks wsn links 5.0.46

wsnlinks wsn links 5.0.47

wsnlinks wsn links 5.0.53

wsnlinks wsn links 5.0.54

wsnlinks wsn links 5.0.55

wsnlinks wsn links 5.0.61

wsnlinks wsn links 5.0.62

wsnlinks wsn links 5.0.69

wsnlinks wsn links 5.0.7

wsnlinks wsn links 5.0.77

wsnlinks wsn links 5.0.78

wsn wsn links 5.1.11

wsn wsn links 5.1.12

wsn links 5.1.19

wsn links 5.1.2

wsn links 5.1.27

wsn links 5.1.28

wsnlinks wsn links 5.0.1

wsnlinks wsn links 5.0.10

wsnlinks wsn links 5.0.11

wsnlinks wsn links 5.0.19

wsnlinks wsn links 5.0.2

wsnlinks wsn links 5.0.25

wsnlinks wsn links 5.0.26

wsnlinks wsn links 5.0.33

wsnlinks wsn links 5.0.34

wsnlinks wsn links 5.0.40

wsnlinks wsn links 5.0.41

wsnlinks wsn links 5.0.48

wsnlinks wsn links 5.0.49

wsnlinks wsn links 5.0.56

wsnlinks wsn links 5.0.57

wsnlinks wsn links 5.0.63

wsnlinks wsn links 5.0.64

wsnlinks wsn links 5.0.70

wsnlinks wsn links 5.0.71

wsnlinks wsn links 5.0.79

wsnlinks wsn links 5.0.8

wsn wsn links 5.1.13

wsn wsn links 5.1.14

wsn links 5.1.20

wsn links 5.1.21

wsn links 5.1.29

wsn links 5.1.3

wsn wsn links 5.1.36

wsn wsn links 5.1.37

wsn wsn links 5.1.43

wsn wsn links 5.1.44

wsn wsn links 5.1.45

wsn wsn links 5.1.7

wsn wsn links 5.1.8

wsnlinks wsn links 5.0.14

wsnlinks wsn links 5.0.16

wsnlinks wsn links 5.0.21

wsnlinks wsn links 5.0.22

wsnlinks wsn links 5.0.29

wsnlinks wsn links 5.0.3

wsnlinks wsn links 5.0.37

wsnlinks wsn links 5.0.38

wsnlinks wsn links 5.0.44

wsnlinks wsn links 5.0.45

wsnlinks wsn links 5.0.51

wsnlinks wsn links 5.0.52

wsnlinks wsn links 5.0.6

wsnlinks wsn links 5.0.60

wsnlinks wsn links 5.0.67

wsnlinks wsn links 5.0.68

wsnlinks wsn links 5.0.74

wsnlinks wsn links 5.0.75

wsnlinks wsn links 5.0.76

wsn wsn links 5.1.1

wsn wsn links 5.1.10

wsn links 5.1.17

wsn links 5.1.18

wsn links 5.1.25

wsn links 5.1.26

wsn links 5.1.32

wsn links 5.1.33

wsn wsn links 5.1.4

wsn wsn links 5.1.40

wsn wsn links 5.1.48

wsn wsn links 5.1.49

wsn links 5.1.34

wsn wsn links 5.1.35

wsn wsn links 5.1.41

wsn wsn links 5.1.42

wsn wsn links 5.1.5

wsn wsn links 5.1.6

wsnlinks wsn links 5.0.12

wsnlinks wsn links 5.0.13

wsnlinks wsn links 5.0.15

wsnlinks wsn links 5.0.20

wsnlinks wsn links 5.0.27

wsnlinks wsn links 5.0.28

wsnlinks wsn links 5.0.35

wsnlinks wsn links 5.0.36

wsnlinks wsn links 5.0.42

wsnlinks wsn links 5.0.43

wsnlinks wsn links 5.0.5

wsnlinks wsn links 5.0.50

wsnlinks wsn links 5.0.58

wsnlinks wsn links 5.0.59

wsnlinks wsn links 5.0.65

wsnlinks wsn links 5.0.66

wsnlinks wsn links 5.0.72

wsnlinks wsn links 5.0.73

wsnlinks wsn links 5.0.9

wsn wsn links 5.1.0

wsn wsn links 5.1.15

wsn wsn links 5.1.16

wsn links 5.1.22

wsn links 5.1.23

wsn links 5.1.24

wsn links 5.1.30

wsn links 5.1.31

wsn wsn links 5.1.38

wsn wsn links 5.1.39

wsn wsn links 5.1.46

wsn wsn links 5.1.47

wsn wsn links 5.1.9

wsn wsn links 6.0.0

Exploits

'WSN Links' SQL Injection Vulnerability (CVE-2010-4006) Mark Stanislav - markstanislav@gmailcom I DESCRIPTION --------------------------------------- A vulnerability exists in the searchphp code that allows for SQL injection of various parameters By assembling portions of SQL code between the affected parameters, successful SQL injection int ...
WSN Links versions prior to 601, 5151 and 5081 suffer from a remote SQL injection vulnerability ...