7.5
CVSSv2

CVE-2012-4265

Published: 13/08/2012 Updated: 14/07/2013
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in category_edit.php in Proman Xpress 5.0.1 allows remote malicious users to execute arbitrary SQL commands via the cid parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

itechscripts proman xpress 5.0.1

Exploits

Title: ====== Proman Xpress v501 - Multiple Web Vulnerabilities Date: ===== 2012-05-09 References: =========== wwwvulnerability-labcom/get_contentphp?id=513 VL-ID: ===== 512 Common Vulnerability Scoring System: ==================================== 75 Introduction: ============= Proman Xpress v501 is a super project manageme ...