CVE-2008-6941

Turnkeyforms Web Hosting Directory - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in the login functionality in TurnkeyForms Web Hosting Directory allows remote attackers to execute arbitrary SQL commands via the password field.

Exploits (1)

exploitdb WRITEUP VERIFIED
by G4N0K · textwebappsphp
https://www.exploit-db.com/exploits/7107

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36166
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/7107
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/52448

Scores

EPSS 0.0050
EPSS Percentile 66.0%

Details

CWE
CWE-89
Status published
Products (1)
turnkeyforms/web_hosting_directory
Published Aug 12, 2009
Tracked Since Feb 18, 2026