CVE-2008-2789
Basic-cms - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in pages/index.php in BASIC-CMS allows remote attackers to execute arbitrary SQL commands via the page_id parameter.
Exploits (2)
metasploit
WORKING POC
NORMAL
rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/fileformat/xradio_xrl_sehbof.rb
References (5)
Scores
EPSS
0.4729
EPSS Percentile
97.6%
Classification
CWE
CWE-89
Status
draft
Affected Products (1)
basic-cms/basic-cms
Timeline
Published
Jun 20, 2008
Tracked Since
Feb 18, 2026