7.5
CVSSv2

CVE-2014-4852

Published: 10/07/2014 Updated: 11/07/2014
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in admin/uploads.php in The Digital Craft AtomCMS, possibly 2.0, allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

thedigitalcraft atomcms 2.0

Exploits

source: wwwsecurityfocuscom/bid/68437/info AtomCMS is prone to an SQL-injection vulnerability and an arbitrary file-upload vulnerability Exploiting these issues could allow an attacker to upload arbitrary files, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database www ...