7.5
CVSSv2

CVE-2010-5019

Published: 02/11/2011 Updated: 17/11/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in view_photo.php in 2daybiz Online Classified Script allows remote malicious users to execute arbitrary SQL commands via the alb parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

2daybiz online classified script

Exploits

Name : 2daybiz online classified system SQLi AND XSS Vulnerability Date : june, 16 2010 Vendor url :www2daybizcom/online_classified_scripthtml Critical Level : HIGH Author : Sid3^effects aKa HaRi <shell_c99[at]yahoocom> special thanks to : r0073r (inj3ct0rcom),L0rd CruSad3r,MaYur,gunslinger_ greetz to :All ICW members and my frie ...