7.5
CVSSv2

CVE-2010-4970

Published: 01/11/2011 Updated: 14/02/2012
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in handlers/getpage.php in Wiki Web Help 0.28 allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

wikiwebhelp wiki web help 0.28

Exploits

# Version: v028 (Possible all versions) # Vendor: Richard Bondi - wikiwebhelporg # Download: wikiwebhelporg/release/wwh-028zip # Description: "The goal of this project is to create a help application that is editable by the community Standard wiki systems are great for many applications The help application and the wiki is an ...