CVE-2008-4895

Yourfreeworld Downline Builder Script - SQL Injection

Title source: rule

Description

SQL injection vulnerability in tr.php in YourFreeWorld Downline Builder allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Hussin X · textwebappsphp
https://www.exploit-db.com/exploits/32563
exploitdb WORKING POC VERIFIED
by Hussin X · textwebappsphp
https://www.exploit-db.com/exploits/6935
exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/6936

Scores

EPSS 0.0050
EPSS Percentile 66.0%

Details

CWE
CWE-89
Status published
Products (1)
yourfreeworld/downline_builder_script
Published Nov 04, 2008
Tracked Since Feb 18, 2026