Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2009-2439

Опубликовано: 13 июл. 2009
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Multiple SQL injection vulnerabilities in Web Development House Alibaba Clone allow remote attackers to execute arbitrary SQL commands via the (1) IndustryID parameter to category.php and the (2) SellerID parameter to supplier/view_contact_details.php. NOTE: this is a product that was developed by a third party; it is not associated with alibaba.com or the Alibaba Group.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:web_development_house:alibaba_clone:*:*:*:*:*:*:*:*

EPSS

Процентиль: 37%
0.00158
Низкий

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

github
почти 4 года назад

Multiple SQL injection vulnerabilities in Web Development House Alibaba Clone allow remote attackers to execute arbitrary SQL commands via the (1) IndustryID parameter to category.php and the (2) SellerID parameter to supplier/view_contact_details.php. NOTE: this is a product that was developed by a third party; it is not associated with alibaba.com or the Alibaba Group.

EPSS

Процентиль: 37%
0.00158
Низкий

7.5 High

CVSS2

Дефекты

CWE-89