CVE-2008-6309

W3matter Askpert - SQL Injection

Title source: rule

Description

SQL injection vulnerability in index.php in W3matter AskPert allows remote attackers to execute arbitrary SQL commands via the f[password] parameter. NOTE: some of these details are obtained from third party information.

Exploits (2)

exploitdb WRITEUP VERIFIED
by TR-ShaRk · textwebappsphp
https://www.exploit-db.com/exploits/7166
exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/7163

Scores

EPSS 0.0068
EPSS Percentile 71.7%

Details

CWE
CWE-89
Status published
Products (1)
w3matter/askpert
Published Feb 27, 2009
Tracked Since Feb 18, 2026