Vulnerabilities > CVE-2007-2685 - Unspecified vulnerability in Jetbox CMS 2.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN jetbox
exploit available
Summary
Multiple SQL injection vulnerabilities in index.php in Jetbox CMS 2.1 allow remote attackers to execute arbitrary SQL commands via the (1) view or (2) login parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Jetbox CMS 2.1 Multiple SQL Injection Vulnerabilities. CVE-2007-2685 . Webapps exploit for php platform |
id | EDB-ID:30066 |
last seen | 2016-02-03 |
modified | 2007-05-21 |
published | 2007-05-21 |
reporter | Jesper Jurcenoks |
source | https://www.exploit-db.com/download/30066/ |
title | Jetbox CMS 2.1 - Multiple SQL Injection Vulnerabilities |
Packetstorm
data source | https://packetstormsecurity.com/files/download/56891/jetbox-sql.txt |
id | PACKETSTORM:56891 |
last seen | 2016-12-05 |
published | 2007-05-22 |
reporter | Jesper Jurcenoks |
source | https://packetstormsecurity.com/files/56891/jetbox-sql.txt.html |
title | jetbox-sql.txt |
References
- http://marc.info/?l=full-disclosure&m=117974433216496&w=2
- http://marc.info/?l=full-disclosure&m=117974433216496&w=2
- http://www.netvigilance.com/advisory0028
- http://www.netvigilance.com/advisory0028
- http://www.osvdb.org/34784
- http://www.osvdb.org/34784
- http://www.securityfocus.com/archive/1/469223/100/0/threaded
- http://www.securityfocus.com/archive/1/469223/100/0/threaded
- http://www.securityfocus.com/bid/24077
- http://www.securityfocus.com/bid/24077
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34387
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34387