CVE-2009-0427

DMXReady Member Directory Manager <1.1 - SQL Injection

Title source: llm

Description

SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Member Directory Manager 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by ajann · textwebappsasp
https://www.exploit-db.com/exploits/7773
exploitdb WORKING POC
webappsasp
https://www.exploit-db.com/exploits/7767

Scores

EPSS 0.0143
EPSS Percentile 80.4%

Classification

CWE
CWE-89
Status draft

Affected Products (1)

dmxready/member_directory_manager

Timeline

Published Feb 05, 2009
Tracked Since Feb 18, 2026