Vulnerabilities > CVE-2007-0687 - Unspecified vulnerability in Michelle L2J Dropcalc
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN michelle
exploit available
Summary
SQL injection vulnerability in i-search.php in Michelle's L2J Dropcalc 4 and earlier allows remote authenticated users to execute arbitrary SQL commands via the itemid parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Michelles L2J Dropcalc. CVE-2007-0687. Webapps exploit for php platform |
file | exploits/php/webapps/3232.txt |
id | EDB-ID:3232 |
last seen | 2016-01-31 |
modified | 2007-01-31 |
platform | php |
port | |
published | 2007-01-31 |
reporter | Codebreak |
source | https://www.exploit-db.com/download/3232/ |
title | Michelles L2J Dropcalc <= 4 - Remote SQL Injection Vulnerability |
type | webapps |
References
- http://osvdb.org/36038
- http://osvdb.org/36038
- http://www.securityfocus.com/bid/22335
- http://www.securityfocus.com/bid/22335
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32003
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32003
- https://www.exploit-db.com/exploits/3232
- https://www.exploit-db.com/exploits/3232