7.5
CVSSv2

CVE-2010-4842

Published: 27/09/2011 Updated: 21/05/2012
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in admin/login.php in MHP DownloadScript (aka MH Products Download Center) 2.2 allows remote malicious users to execute arbitrary SQL commands via the Name parameter. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

mhproducts download center 2.2

Exploits

Name : MHP DownloadScript v22 <<= SQL injection Vulnerability +Autor : DeadLy DeMon +Date : 18122010 +Script : MHP DownloadScript v22 +Download : ---- +Site : wwwmhproductsde/php-scripte-5/tools-dienste/download-centerhtml +Dork : Not Dork +Price : 4,99 EURO +Language : PHP +Tests : Windows XP SP 3 and Backtrack4 any other OS + ...