7.5
CVSSv2

CVE-2017-15980

Published: 31/10/2017 Updated: 17/11/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

US Zip Codes Database Script 1.0 allows SQL Injection via the state parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

rowindex us zip codes database script 1.0

Exploits

# # # # # # Exploit Title: US Zip Codes Database Script - SQL Injection # Dork: N/A # Date: 30102017 # Vendor Homepage: rowindexcom/ # Software Link: wwwcodestercom/items/4898/us-zip-codes-database-php-script # Demo: rowindexcom/demo/ # Version: N/A # Category: Webapps # Tested on: WiN7_x64/KaLiLinuX_x64 # CVE: CVE-2017 ...
US Zip Codes Database suffers from a remote SQL injection vulnerability ...