7.5
CVSSv2

CVE-2013-6985

Published: 09/12/2013 Updated: 11/12/2013
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in m_worklog/log_searchday.jsp in Enorth Webpublisher CMS, possibly 5.0 and previous versions, allows remote malicious users to execute arbitrary SQL commands via the thisday parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

enorth webpublisher cms

Exploits

source: wwwsecurityfocuscom/bid/64110/info Enorth Webpublisher is prone to an SQL-injection vulnerability because the application fails to properly sanitize user-supplied input A successful exploit will allow an attacker to compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database ...
Enorth Webpublisher CMS suffers from a remote SQL injection vulnerability ...