CVE-2007-1920

Smodbip < 1.06 - SQL Injection

Title source: rule

Description

SQL injection vulnerability in index.php in the aktualnosci module in SmodBIP 1.06 and earlier allows remote attackers to execute arbitrary SQL commands via the zoom parameter, possibly related to home.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Kacper · phpwebappsphp
https://www.exploit-db.com/exploits/3678

Scores

EPSS 0.0134
EPSS Percentile 80.1%

Details

CWE
CWE-89
Status published
Products (1)
smodbip/smodbip < 1.06
Published Apr 10, 2007
Tracked Since Feb 18, 2026