• Sign in

CVE-2009-4783

    CVE-2009-4783  
Description Multiple SQL injection vulnerabilities in Theeta CMS, possibly 0.01, allow remote attackers to execute arbitrary SQL commands via the start parameter to (1) forum.php and (2) thread.php in community/, and (3) blog/index.php.
Impact
  CVSS v2 : 7.5 HIGH  
Type
  CWE-89  
Attack Vector
CVSSv2 Vector : AV:N/AC:L/Au:N/C:P/I:P/A:P
Quick linksCVE, NVD, CERT, Metasploit, Exploit-db, Fulldisc, Bugtraq, Microsoft, Red Hat, Debian, GitHub code/issues, Google
References
http://packetstormsecurity.org/0912-exploits/theeta-sqlxss.txt
http://secunia.com/advisories/37529
http://www.securityfocus.com/archive/1/508148/100/0/threaded
  • FAQ
  • Terms of service
  • Privacy policy