7.5
CVSSv2

CVE-2010-5004

Published: 02/11/2011 Updated: 17/11/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in searchvote.php in 2daybiz Polls (aka Advanced Poll) Script allows remote malicious users to execute arbitrary SQL commands via the category parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

2daybiz polls script

Exploits

----------------------------Information------------------------------------------------ +Autor : Easy Laster +ICQ : 11-051-551 +Info : www2daybizcom/polls_scripthtml +Discovered by Easy Laster 4004-security-projectcom +Security Group Undergroundagents and 4004-Security-Project 4004-security-projectcom +And all Friends of Cyberlive : R!p ...