Vulnerabilities > CVE-2007-2641 - SQL Injection vulnerability in W1L3D4 Philboard 0.2

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
w1l3d4
exploit available

Summary

SQL injection vulnerability in W1L3D4_bolum.asp in W1L3D4 Philboard 0.2 allows remote attackers to execute arbitrary SQL commands via the forumid parameter, a different vector than CVE-2007-0920.

Vulnerable Configurations

Part Description Count
Application
W1L3D4
1

Exploit-Db

descriptionW1L3D4 Philboard 0.2 (W1L3D4_bolum.asp forumid) SQL Injection Vuln. CVE-2007-2641. Webapps exploit for asp platform
fileexploits/asp/webapps/3905.txt
idEDB-ID:3905
last seen2016-01-31
modified2007-05-11
platformasp
port
published2007-05-11
reportergsy
sourcehttps://www.exploit-db.com/download/3905/
titleW1L3D4 Philboard 0.2 W1L3D4_bolum.asp forumid SQL Injection Vuln
typewebapps