7.5
CVSSv2

CVE-2012-4993

Published: 19/09/2012 Updated: 21/09/2012
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

torrent_functions.php in RivetTracker 1.03 and previous versions does not properly restrict access, which allows remote malicious users to have an unspecified impact.

Vulnerable Product Search on Vulmon Subscribe to Product

rivetcode rivettracker

Exploits

# Exploit Title: Multiple SQL injections in rivettracker <=103 # Date: 2/3/2012 # Author: Ali Raheem # Software Link: wwwrivetcodecom/software/rivettracker/ # Version: <=103 # Tested on: Linux guruplug-debian 317 #2 PREEMPT Tue Jan 3 20:19:54 MST 2012 armv5tel GNU/Linux # Greets: spyware, dividead RivetTracker is a php base torr ...