Vulnerabilities > CVE-2007-4116 - SQL Injection vulnerability in Metyus Forum Portal 1.0

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
metyus
exploit available

Summary

SQL injection vulnerability in philboard_forum.asp in Metyus Forum Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. NOTE: this might be related to CVE-2007-0920 or CVE-2007-3884.

Vulnerable Configurations

Part Description Count
Application
Metyus
1

Exploit-Db

descriptionMetyus Forum Portal 1.0 Philboard_Forum.ASP SQL Injection Vulnerability. CVE-2007-4116 . Webapps exploit for asp platform
idEDB-ID:30423
last seen2016-02-03
modified2007-07-27
published2007-07-27
reporterCr@zy_King
sourcehttps://www.exploit-db.com/download/30423/
titleMetyus Forum Portal 1.0 Philboard_Forum.ASP SQL Injection Vulnerability