27841vdb entry
http://www.securityfocus.com/bid/27841 CVE-2008-0811
AuraCMS 1.62 - Multiple SQL Injections
Record summary
CVE-2008-0811 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Multiple SQL injection vulnerabilities in AuraCMS 1.62 allow remote attackers to execute arbitrary SQL commands via (1) the kid parameter to (a) mod/dl.php or (b) mod/links.php, and (2) the query parameter to search.php.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBAuraCMS 1.62 - Multiple SQL InjectionsExploitDB exploitby NTOS-TeamNot analyzed1 file
References
41019430vdb entry
http://www.securitytracker.com/id?1019430 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2008-0811 5130exploit
https://www.exploit-db.com/exploits/5130