CVE-2008-0921

Becontent - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in news.php in beContent 0.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Cr@zy_King · textwebappsphp
https://www.exploit-db.com/exploits/5170

References (3)

Core 3
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/29061
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/27928
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/5170

Scores

EPSS 0.0054
EPSS Percentile 67.7%

Details

CWE
CWE-89
Status published
Products (1)
becontent/becontent 0.3.1
Published Feb 22, 2008
Tracked Since Feb 18, 2026