CVE-2010-2670

BrotherScripts Recipe Website - SQL Injection

Title source: llm
STIX 2.1

Description

SQL injection vulnerability in recipedetail.php in BrotherScripts Recipe Website allows remote attackers to execute arbitrary SQL commands via the id parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Sid3^effects · textwebappsphp
https://www.exploit-db.com/exploits/14224

References (4)

Core 4
Core References
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/14224
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2010/1714
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/60070
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/41365

Scores

EPSS 0.0027
EPSS Percentile 49.9%

Details

CWE
CWE-89
Status published
Products (1)
brotherscripts/recipe_website
Published Jul 08, 2010
Tracked Since Feb 18, 2026