42706Third-party advisory
http://secunia.com/advisories/42706 CVE-2010-4615
Oto Galery 1.0 - Multiple SQL Injections
Record summary
CVE-2010-4615 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Multiple SQL injection vulnerabilities in Oto Galeri Sistemi 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) arac parameter to carsdetail.asp and the (2) marka parameter to twohandscars.asp.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBOto Galery 1.0 - Multiple SQL InjectionsExploitDB exploitby DeadLy DeMonNot analyzed1 file
References
515777exploit
http://www.exploit-db.com/exploits/15777 45513vdb entry
http://www.securityfocus.com/bid/45513 otogalerisistemi-carsdetail-sql-injection(64210)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/64210 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-4615