CVE-2009-2885

Phpscriptsnow World's Tallest Buildings - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in bios.php in PHP Scripts Now World's Tallest Buildings allows remote attackers to execute arbitrary SQL commands via the rank parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by 599eme Man · textwebappsphp
https://www.exploit-db.com/exploits/34894

References (4)

Core 4
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35935
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/51870
Exploit vdb-entry x_refsource_osvdb
http://www.osvdb.org/56121

Scores

EPSS 0.0017
EPSS Percentile 37.8%

Details

CWE
CWE-89
Status published
Products (1)
phpscriptsnow/world\'s_tallest_buildings
Published Aug 20, 2009
Tracked Since Feb 18, 2026