CVE-2009-3224

Classified-software Super Mod System - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in index.php in Super Mod System, when using the 68 Classifieds 3.1 Core System, allows remote attackers to execute arbitrary SQL commands via the s parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by MizoZ · textwebappsphp
https://www.exploit-db.com/exploits/9270

References (3)

Core 3
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/9270
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/35973
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2009/2027

Scores

EPSS 0.0024
EPSS Percentile 47.5%

Details

CWE
CWE-89
Status published
Products (1)
classified-software/super_mod_system
Published Sep 16, 2009
Tracked Since Feb 18, 2026