Record summary

CVE-2008-6614 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Multiple SQL injection vulnerabilities in microcms-admin-login.php in Implied By Design (IBD) Micro CMS 3.5 (aka 0.3.5) allow remote attackers to execute arbitrary SQL commands via (1) the administrators_username parameter (aka the Username field) or (2) the administrators_pass parameter (aka the Password field).

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMicro CMS 3.5 - SQL Injection / Local File InclusionExploitDB exploitby learn3r hackerNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details

References

9