Vulnerabilities > CVE-2007-4076 - SQL Injection vulnerability in ASP Indir Alisveris Sitesi Script 0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
asp-indir
exploit available

Summary

Multiple SQL injection vulnerabilities in index.asp in Alisveris Sitesi Scripti allow remote attackers to execute arbitrary SQL commands via the (1) product_id or (2) cat_id parameter in a product mod action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Configurations

Part Description Count
Application
Asp_Indir
1

Exploit-Db

descriptionAlisveris Sitesi Scripti Index.ASP SQL Injection Vulnerabilities. CVE-2007-4076. Webapps exploit for asp platform
idEDB-ID:30328
last seen2016-02-03
modified2007-07-23
published2007-07-23
reporterGeFORC3
sourcehttps://www.exploit-db.com/download/30328/
titleAlisveris Sitesi Scripti Index.ASP SQL Injection Vulnerabilities