6.8
CVSSv2

CVE-2011-0512

Published: 20/01/2011 Updated: 17/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in team.php in the Teams Structure module 3.0 for PHP-Fusion allows remote malicious users to execute arbitrary SQL commands via the team_id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

jikaka teams_structure_module 3.0

Exploits

# Exploit Title: PHP-fusion Team Structure Infusion (All versions) SQL injection # Date: 16-1-2010 # Author: Saif El-Sherei # Software Link: wwwphp-fusioncouk/infusions/addondb/viewphp?addon_id=120 # Version: PHP-fusion (70103), TeamStructure Infusion(all versions) # Tested on: Firefox 3015, , IE 8 Info: Plugin that allows the sit ...