7.5
CVSSv2

CVE-2011-4026

Published: 21/10/2011 Updated: 29/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in thanks.php in NexusPHP 1.5 allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

xia zuojie nexusphp 1.5

Exploits

# Exploit Title: Nexusphpv15 SQL injection Vulnerability # Google Dork: intitle:nexusphp # Date: 2011-10-08 # Author: flyh4t # Software Link: sourceforgenet/projects/nexusphp/ # Version: nexusphpv15 # Tested on: linux+apache # CVE : CVE-2011-4026 Nexusphp is BitTorrent private tracker scripts written in PHP The codes is here s ...
NexusPHP version 15 suffers from a remote SQL injection vulnerability ...