7.5
CVSSv2

CVE-2010-4797

Published: 27/04/2011 Updated: 17/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in the log-in form in Truworth Flex Timesheet allow remote malicious users to execute arbitrary SQL commands via the (1) Username and (2) Password fields.

Vulnerable Product Search on Vulmon Subscribe to Product

truworthit flex timesheet

Exploits

=================================================== Flex Timesheet - Authentication Bypass() Vulnerability =================================================== ~~~~~~~~~~~~~~~[My]~~~~~~~~~~~~~~~~~~~~~~~~~~~~ [+] Author : KnocKout [~] Contact : knockoutr@msncom [+] Greatz : h4x0reSEC / Inj3ct0r Team / Exploit-DB { H4X0RE SECURITY PROJECT ...