CVE-2010-2511

2daybiz Multi Level Marketing Software - SQL Injection

Title source: rule
STIX 2.1

Description

SQL injection vulnerability in viewnews.php in 2daybiz Multi Level Marketing (MLM) Software allows remote attackers to execute arbitrary SQL commands via the nwsid parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by JaMbA · textwebappsphp
https://www.exploit-db.com/exploits/14005

References (3)

Core 3
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/14005
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/40340
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/41097

Scores

EPSS 0.0024
EPSS Percentile 47.6%

Details

CWE
CWE-89
Status published
Products (1)
2daybiz/multi_level_marketing_software
Published Jun 28, 2010
Tracked Since Feb 18, 2026