PT-2007-4120 · Unknown · Gazi Download Portal

Ertuqrul

·

Publicado

2007-05-22

·

Atualizado

2017-07-29

·

CVE-2007-2810

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Gazi Download Portal (affected versions not specified)
Description The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the id parameter in the "down indir.asp" file.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-2810

Produtos afetados

Gazi Download Portal