CVE-2008-2791

Kalptaru Infotech Comparison Engine Power Script - SQL Injection

Title source: rule

Description

SQL injection vulnerability in product.detail.php in Kalptaru Infotech Comparison Engine Power Script 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Mr.SQL · perlwebappsphp
https://www.exploit-db.com/exploits/5834

Scores

EPSS 0.0049
EPSS Percentile 64.9%

Classification

CWE
CWE-89
Status draft

Affected Products (1)

kalptaru_infotech/comparison_engine_power_script

Timeline

Published Jun 20, 2008
Tracked Since Feb 18, 2026