CVE-2009-0110

RiotPix <0.61 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in read.php in RiotPix 0.61 and earlier allows remote attackers to execute arbitrary SQL commands via the forumid parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by cOndemned · phpwebappsphp
https://www.exploit-db.com/exploits/7679

Scores

EPSS 0.0049
EPSS Percentile 65.4%

Details

CWE
CWE-89
Status published
Products (6)
riotpix/riotpix .05
riotpix/riotpix 0.5
riotpix/riotpix 0.51 beta
riotpix/riotpix 0.52
riotpix/riotpix 0.60
riotpix/riotpix < 0.61
Published Jan 09, 2009
Tracked Since Feb 18, 2026