755
VMScore

CVE-2018-10757

Published: 05/05/2018 Updated: 12/06/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

CSP MySQL User Manager 2.3.1 allows SQL injection, and resultant Authentication Bypass, via a crafted username during a login attempt.

Vulnerable Product Search on Vulmon Subscribe to Product

csp mysql user manager project csp mysql user manager 2.3.1

Exploits

# Exploit Title: CSP MySQL User Manager 231 - Authentication Bypass # Date: 2018-05-04 # Exploit Author: Youssef mami # Vendor Homepage: codegooglecom/archive/p/cspmum/ # Software Link: storagegoogleapiscom/google-code-archive-downloads/v2/codegooglecom/cspmum/cmum-231zip # Version: 231 # Tested on: Linux 2638-11 # CVE ...