Vulnerabilities > CVE-2007-4109 - Unspecified vulnerability in Codewidgets Online Event Registration Template
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN codewidgets
exploit available
Summary
SQL injection vulnerability in sign_in.aspx in WebStore (Online Store Application Template) allows remote attackers to execute arbitrary SQL commands via the Password parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Online Store Application Template Sign_In.ASPX SQL Injection Vulnerability. CVE-2007-4109. Webapps exploit for asp platform |
id | EDB-ID:30425 |
last seen | 2016-02-03 |
modified | 2007-07-28 |
published | 2007-07-28 |
reporter | Aria-Security Team |
source | https://www.exploit-db.com/download/30425/ |
title | Online Store Application Template Sign_In.ASPX SQL Injection Vulnerability |
References
- http://outlaw.aria-security.info/?p=10
- http://outlaw.aria-security.info/?p=10
- http://secunia.com/advisories/26237
- http://secunia.com/advisories/26237
- http://securityreason.com/securityalert/2947
- http://securityreason.com/securityalert/2947
- http://www.securityfocus.com/archive/1/474932/100/0/threaded
- http://www.securityfocus.com/archive/1/474932/100/0/threaded
- http://www.securityfocus.com/bid/25112
- http://www.securityfocus.com/bid/25112
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35669
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35669