CVE-2007-5992

datecomm Social Networking Script - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in index.php in datecomm Social Networking Script (aka Myspace Clone Script) allows remote attackers to execute arbitrary SQL commands via the seid parameter in a viewcat s action on the forums page.

Exploits (1)

exploitdb WORKING POC VERIFIED
by t0pP8uZz · textwebappsphp
https://www.exploit-db.com/exploits/4622

References (4)

Core 4
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/26422
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/4622
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/3905
Exploit vdb-entry x_refsource_osvdb
http://osvdb.org/39728

Scores

EPSS 0.0080
EPSS Percentile 74.2%

Details

CWE
CWE-89
Status published
Products (1)
datecomm/social_networking_script
Published Nov 15, 2007
Tracked Since Feb 18, 2026