Vulnerabilities > CVE-2007-3987 - Unspecified vulnerability in Junction Quest Image Racer 1.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN junction-quest
exploit available
Summary
SQL injection vulnerability in SearchResults.asp in ImageRacer 1.0, when WordSearchCrit is enabled, allows remote attackers to execute arbitrary SQL commands via the SearchWord parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Image Racer SearchResults.ASP SQL Injection Vulnerability. CVE-2007-3987 . Webapps exploit for asp platform |
id | EDB-ID:30332 |
last seen | 2016-02-03 |
modified | 2007-07-23 |
published | 2007-07-23 |
reporter | Aria-Security Team |
source | https://www.exploit-db.com/download/30332/ |
title | Image Racer SearchResults.ASP SQL Injection Vulnerability |
References
- http://osvdb.org/36277
- http://osvdb.org/36277
- http://outlaw.aria-security.info/?p=7
- http://outlaw.aria-security.info/?p=7
- http://secunia.com/advisories/26169
- http://secunia.com/advisories/26169
- http://securityreason.com/securityalert/2925
- http://securityreason.com/securityalert/2925
- http://www.securityfocus.com/archive/1/474419/100/0/threaded
- http://www.securityfocus.com/archive/1/474419/100/0/threaded
- http://www.securityfocus.com/bid/25010
- http://www.securityfocus.com/bid/25010
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35537
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35537