Vulnerabilities > CVE-2007-3051 - Unspecified vulnerability in Revokesoft Revokebb
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN revokesoft
exploit available
Summary
SQL injection vulnerability in inc/class_users.php in RevokeSoft RevokeBB 1.0 RC4 and earlier allows remote attackers to execute arbitrary SQL commands via the revokebb_user cookie.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | RevokeBB. CVE-2007-3051. Webapps exploit for php platform |
file | exploits/php/webapps/4020.php |
id | EDB-ID:4020 |
last seen | 2016-01-31 |
modified | 2007-06-01 |
platform | php |
port | |
published | 2007-06-01 |
reporter | BlackHawk |
source | https://www.exploit-db.com/download/4020/ |
title | RevokeBB <= 1.0 RC4 - Blind SQL Injection / Hash Retrieve Exploit |
type | webapps |
References
- http://osvdb.org/38366
- http://osvdb.org/38366
- http://www.securityfocus.com/archive/1/470276/100/0/threaded
- http://www.securityfocus.com/archive/1/470276/100/0/threaded
- http://www.securityfocus.com/bid/24272
- http://www.securityfocus.com/bid/24272
- http://www.vupen.com/english/advisories/2007/2041
- http://www.vupen.com/english/advisories/2007/2041
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34666
- https://exchange.xforce.ibmcloud.com/vulnerabilities/34666
- https://www.exploit-db.com/exploits/4020
- https://www.exploit-db.com/exploits/4020