6.5
CVSSv2

CVE-2014-10034

Published: 13/01/2015 Updated: 08/09/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple SQL injection vulnerabilities in the admin area in couponPHP prior to 1.2.0 allow remote administrators to execute arbitrary SQL commands via the (1) iDisplayLength or (2) iDisplayStart parameter to (a) comments_paginate.php or (b) stores_paginate.php in admin/ajax/.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

couponphp couponphp

Exploits

couponPHP CMS 10 Multiple Stored XSS and SQL Injection Vulnerabilities Vendor: couponPHP Product web page: wwwcouponphpcom Affected version: 10 Summary: couponPHP is a revolutionary content management system for running Coupon and Deal websites It is feature rich, powerful, beautifully designed and fully automatic Desc: couponPHP i ...