CVE-2009-1500

Projectcms - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in index.php in ProjectCMS 1.0 Beta allows remote attackers to execute arbitrary SQL commands via the sn parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by YEnH4ckEr · textwebappsphp
https://www.exploit-db.com/exploits/8565

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/503079/100/0/threaded
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/8565
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34767

Scores

EPSS 0.0032
EPSS Percentile 55.3%

Details

CWE
CWE-89
Status published
Products (1)
projectcms/projectcms 1.0_beta
Published May 01, 2009
Tracked Since Feb 18, 2026