6.8
CVSSv2

CVE-2012-5348

Published: 09/10/2012 Updated: 29/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in MangosWeb Enhanced 3.0.3 allows remote malicious users to execute arbitrary SQL commands via the login parameter in a login action to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

wilson steven mangosweb enhanced 3.0.3

Exploits

EXPLOIT TITLE: MangosWeb SQL Vulnerability DATE: 1/7/2012 BY Hood3dRob1n AFFECTED PRODUCTS: MangosWeb Enhanced Version 303 SW LINK: codegooglecom/p/mwenhanced/ CATEGORY: WebApp 0day DORK: intext:MangosWeb ENhanced Version 303 @2009-2011, KeysWow Dev Team TESTED ON: W7 & Backtrack 5 DEMO1: wowfactionselfipcom/wow/ DEMO2: ht ...