Vulnerabilities > CVE-2007-4171 - SQL Injection vulnerability in auraCMS Forum Module Pilih.ASP
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
SQL injection vulnerability in komentar.php in the Forum Module for auraCMS (Modul Forum Sederhana) allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI. NOTE: some of these details are obtained from third party information.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | AuraCMS [Forum Module] Remote SQL Injection Vulnerability. CVE-2007-4171. Webapps exploit for php platform |
file | exploits/php/webapps/4254.txt |
id | EDB-ID:4254 |
last seen | 2016-01-31 |
modified | 2007-08-05 |
platform | php |
port | |
published | 2007-08-05 |
reporter | k1tk4t |
source | https://www.exploit-db.com/download/4254/ |
title | AuraCMS - Forum Module Remote SQL Injection Vulnerability |
type | webapps |