CVE-2010-4360

Jurpopage - SQL Injection

Title source: rule
STIX 2.1

Description

Multiple SQL injection vulnerabilities in index.php in Jurpopage 0.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) note and (2) pg parameters, different vectors than CVE-2010-4359. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Sudden_death · textwebappsphp
https://www.exploit-db.com/exploits/15621

References (2)

Core 2
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/42387
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/45076

Scores

EPSS 0.0012
EPSS Percentile 30.8%

Details

CWE
CWE-89
Status published
Products (1)
jurpo/jurpopage 0.2.0
Published Dec 01, 2010
Tracked Since Feb 18, 2026