7.5
CVSSv2

CVE-2015-1400

Published: 03/02/2015 Updated: 04/02/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in search.php in NPDS Revolution 13 allows remote malicious users to execute arbitrary SQL commands via the query parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

npds revolution 13.0

Exploits

Title - NPDS CMS Revolution-13 - SQL Injection Vulnerability Credits & Author: Narendra Bhati ( R00t Sh3ll ) wwwwebsecgeekscom References (Source): ==================== wwwnpdsorg/viewtopicphp?topic=26233&forum=12 websecgeekscom/npds-cms-sql-injection/ Release Date: ============= 24-01-2015 CVE ID : =========== ...
NPDS CMS Revolution-13 suffers from a remote SQL injection vulnerability ...