Vulnerabilities > CVE-2007-0600 - SQL Injection vulnerability in Makit Newsposter Script News_Page.ASP

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
makit
martyn-kilbryde
exploit available

Summary

SQL injection vulnerability in news_page.asp in Martyn Kilbryde Newsposter Script (aka makit news/blog poster) 3 and earlier allows remote attackers to execute arbitrary SQL commands via the uid parameter.

Vulnerable Configurations

Part Description Count
Application
Makit
1
Application
Martyn_Kilbryde
1

Exploit-Db

descriptionmakit Newsposter Script v3 Remote SQL Injection Vulnerability. CVE-2007-0600. Webapps exploit for asp platform
fileexploits/asp/webapps/3194.txt
idEDB-ID:3194
last seen2016-01-31
modified2007-01-25
platformasp
port
published2007-01-25
reporterajann
sourcehttps://www.exploit-db.com/download/3194/
titlemakit Newsposter Script 3.0 - Remote SQL Injection Vulnerability
typewebapps